Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 3Objective 2

API and Java Web Token Penetration Testing CPENT Practice Questions (Page 11)

Part of the Web and API Penetration Testing domain, which makes up ~15% of our current practice bank.

68questions here
14free pages
17concepts

Questions 51–55

  1. 51foundation · easy

    Which JWT attack involves changing the 'alg' header to 'none' to bypass signature verification?

    Select an answer first
  2. 52foundation · easy

    What type of vulnerability occurs when an API uses a user-supplied identifier to access a resource without verifying that the user owns that resource?

    Select an answer first
  3. 53expert · hard

    You are testing an API that uses RS256 JWTs. You have the public key. You also notice that the server accepts HS256 tokens. Which attack is most likely to allow you to forge an admin token?

    Select an answer first
  4. 54application · medium

    You captured a JWT that uses HS256. The token's payload contains a claim 'role': 'user'. You want to escalate to 'admin'. Which approach is most likely to succeed?

    Select an answer first
  5. 55expert · hard

    You are testing an API that returns user profiles. The API response includes fields like 'internal_id', 'password_hash', and 'credit_card_number' even though the client only needs 'username' and 'email'. Which vulnerability is this?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.