A penetration tester is hired to assess the security of a company's internal network. The tester is given full network diagrams, credentials, and source code. Which type of penetration test is being performed?
Trap 1: Black box
Black box testing provides no prior knowledge to the tester.
Trap 2: Grey box
Grey box testing provides partial knowledge.
Trap 3: Red team
Red team is a type of engagement, not a knowledge level.
- A
White box
White box testing provides full knowledge and credentials.
- B
Black box
Why wrong: Black box testing provides no prior knowledge to the tester.
- C
Grey box
Why wrong: Grey box testing provides partial knowledge.
- D
Red team
Why wrong: Red team is a type of engagement, not a knowledge level.