How would you judge if a remote server is running IIS or Apache?
Answers were Sorted based on User's Feedback
Answer / chaitanya
Error messages oftentimes giveaway what the server is running, and many times if the website administrator has not set up custom error pages for every site, it can give it away as simply as just entering a known bad address. Other times, just using telnet can be enough to see how it responds. Never underestimate the amount of information that can be gained by not getting the right answer but by asking the right questions.
| Is This Answer Correct ? | 5 Yes | 0 No |
Answer / gaurav
Penetration testing techniques can easily reveal from a website which of the ports, operating systems and web servers are running. For Instance, Nikto and Owasp-Zed are two methods of doing this.
| Is This Answer Correct ? | 1 Yes | 0 No |
What is the difference between Information Protection and Information Assurance?
What do you think of social networking sites such as Facebook and LinkedIn?
What is the difference between closed-source and open-source? Which is better?
Why would you bring in an outside contractor to perform a penetration test?
What is residual risk?
If you were going to break into a database-based website, how would you do it?
What is the Chain of Custody?
You see a user logging in as root to perform basic functions. Is this a problem?
A phonetic password generator picks two segments randomly for each six-letter password. The form of each segment is CVC (consonant, vowel, consonant), where V= < a, e, i, o, u > and C = (V.) ̅ What is the total password population? What is the probability of an adversary guessing a password correctly?
What is dora process in DHCP and how it works?
How many security protocols available?
What is a spooler on a computer?