|
IBM 000-139 Exam - Cheat-Test.com Free 000-139 Sample Questions:
1. In the AppScan Application Data view, what can help you determine if your application was fully explored? (Choose two.)
A. Visited URLs
B. JavaScripts
C. Cookies
D. Broken links
Answer: A, D
2. Which AppScan report type relates to Sarbanes-Oxley Act, HIPPA and FISMA?
A. Compliance
B. WASC Threat Classification
C. OWASP Top 10
D. Delta Analysis
Answer: A
3. Which three actions should you take if your application requires form-based authentication? (Choose three.)
A. record a login sequence
B. configure platform authentication
C. configure client-side certificates
D. ensure that in-session detection is enabled and properly configured
E. ensure that all session tokens are being tracked
F. reduce the number of threads to one
Answer: A, D, E
4. Which defense is most reliable in protecting a Web application from being hacked?
A. set up an application firewall
B. use SSL encryption
C. set up an Intrusion Detection System
D. write secure code
Answer: D
5. You notice that when you run your scan, your login account gets locked out. How can you resolve the issue?
A. disable tests on your login and logout pages
B. disable JavaScript execute
C. reduce the number of threads
D. increase the timeout limit
Answer: A
6. Why is it important to encrypt the HTTP traffic for an authenticated connection between a client and Web server?
A. to prevent SQL injection
B. to prevent sensitive information from being stolen
C. to prevent Cross-site Scripting
D. to prevent Web site defacement
Answer: B
7. After 30 minutes your scan stops with an out-of-session error. What is a possible cause of this error?
A. Redundant path limit was too low.
B. A parameter was not tracked.
C. Flash parsing was turned off.
D. Platform authentication was not configured.
Answer: B |