Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Shared Assessments CTPRP Exam - Topic 2 Question 1 Discussion

Which of the following is NOT an example of a type of application security testing?
A) Cookie consent scanning
B) Interactive testing
C) Static testing
D) Dynamic testing

Shared Assessments CTPRP Exam - Topic 2 Question 1 Discussion

Actual exam question for Shared Assessments's CTPRP exam
Question #: 1
Topic #: 2
[All CTPRP Questions]

Which of the following is NOT an example of a type of application security testing?

Show Suggested Answer Hide Answer
Suggested Answer: A

Application security testing (AST) is a process of finding and eliminating vulnerabilities in software applications. There are different types of AST tools that can help with this process, such as static, dynamic, and interactive testing. Static testing analyzes the source code of the application without executing it, dynamic testing simulates attacks on the running application from the outside, and interactive testing combines both static and dynamic analysis to find more vulnerabilities and provide more context. Cookie consent scanning is not a type of AST, but rather a tool that checks if a website complies with the cookie consent regulations, such as the EU General Data Protection Regulation (GDPR) or the California Consumer Privacy Act (CCPA). Cookie consent scanning does not test the security of the application, but rather the privacy and compliance of the website.Reference:

1: 10 Types of Application Security Testing Tools: When and How to Use Them

2: 5 Types of Application Security Testing You Must Know About

3: Types of Application Security Testing: Definitions and Differences

4: What is Application Security? | VMware Glossary


Contribute your Thoughts:

0/2000 characters
Ressie
22 days ago
Static and dynamic testing are definitely legit types.
upvoted 0 times
...
Erinn
27 days ago
Wait, cookie consent scanning isn’t a testing type? That’s surprising!
upvoted 0 times
...
Johnson
1 month ago
Nah, I disagree, I’d go with B.
upvoted 0 times
...
Donte
1 month ago
I think A is the right answer.
upvoted 0 times
...
Honey
1 month ago
I feel like I've seen similar questions before, and cookie consent scanning stood out as not fitting with the others.
upvoted 0 times
...
Sunshine
2 months ago
I'm leaning towards A as the answer since it seems different from the other testing methods, but I might be overthinking it.
upvoted 0 times
...
Hildred
2 months ago
I remember practicing questions about static and dynamic testing, but I can't recall if cookie consent scanning was mentioned as a testing type.
upvoted 0 times
...
Merrilee
2 months ago
I think cookie consent scanning is more about compliance than security testing, but I'm not entirely sure.
upvoted 0 times
...
Chara
2 months ago
I'm a bit confused about cookie consent scanning; it seems more related to compliance than security testing.
upvoted 0 times
...
Micaela
2 months ago
I feel like I've seen a question similar to this before, and I think interactive testing was included as a valid type.
upvoted 0 times
...
Noel
2 months ago
I remember practicing with static and dynamic testing, but I can't recall if cookie consent scanning was mentioned as a testing type.
upvoted 0 times
...
Diego
3 months ago
I think cookie consent scanning sounds different from the other types of testing, but I'm not entirely sure.
upvoted 0 times
...

Save Cancel