Answered step by step
Verified Expert Solution
Link Copied!

Question

1 Approved Answer

During a black box assessment on a web-based application, a penetration tester is provided only with a URL to a login page. The following is

During a black box assessment on a web-based application, a penetration tester is provided only with a URL to a login page. The following is the code and output:

import requests

from BeautifulSoup import BeautifulSoup

request = requests.get (\"https://www.willpanek.com/admin\") respHeaders, respBody = request [0], request [1]

if respHeader.statuscode = 200:

soup = BeautifulSoup (respBody)

soup = soup.FindAll (\"div\", {\"type\": \"hidden\"}) print respHeader.StatusCode, StatusMessage

else:

print respHeader.StatusCode, StatusMessage Output: 200 OK

What is the penetration tester trying to do?

A. Analyze the HTTP response code.

B. Horizontally escalate privileges.

C. Scrape the page for hidden fields.

D. Search for HTTP headers.

Step by Step Solution

There are 3 Steps involved in it

Step: 1

blur-text-image

Get Instant Access to Expert-Tailored Solutions

See step-by-step solutions with expert insights and AI powered tools for academic success

Step: 2

blur-text-image

Step: 3

blur-text-image

Ace Your Homework with AI

Get the answers you need in no time with our AI-driven, step-by-step assistance

Get Started

Recommended Textbook for

Income Tax Fundamentals 2013

Authors: Gerald E. Whittenburg, Martha Altus Buller, Steven L Gill

31st Edition

1111972516, 978-1285586618, 1285586611, 978-1285613109, 978-1111972516

More Books

Students also viewed these Programming questions