
EC-CouncilCertified Penetration Testing Professional
Domain 6Objective 1
Reverse Engineering, Fuzzing, and Binary Exploitation CPENT Practice Questions (Page 8)
Part of the Advanced Exploitation and IoT domain, which makes up ~17% of our current practice bank.
59questions here
12free pages
16concepts
Questions 36–40
- 36
What is the first step in analyzing a firmware image extracted from an IoT device?
Select an answer first - 37
Which of the following is a common metric used by coverage-guided fuzzers to decide which inputs to keep?
Select an answer first - 38
A penetration tester is analyzing a Linux binary in GDB. The tester wants to see the disassembly of the main function and set a breakpoint at the function's entry point. Which GDB commands should be used?
Select an answer first - 39
A security analyst has extracted a firmware image from an IoT device. The firmware is a raw binary that is expected to contain a Linux kernel and a filesystem. The analyst wants to emulate the firmware to perform dynamic analysis of a web service running on the device. The analyst has identified the architecture as MIPS. Which approach is most effective for emulating the entire firmware?
Select an answer first - 40
What is the purpose of DEP (Data Execution Prevention) / NX (No-eXecute) bit?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.