What type of hacker is officially employed by companies to run authorized penetration tests, identifying security bugs so they can be patched before a breach occurs? MCQ with Answer and Explanation

What type of hacker is officially employed by companies to run authorized penetration tests, identifying security bugs so they can be patched before a breach occurs?
A. Grey Hat Hacker
B. Script Kiddie
C. White Hat Hacker
D. Black Hat Hacker
Answer: Option C
Solution (By JKSSB Mock Tests)
White hat hackers act as ethical safety professionals, using defensive and authorized offensive technical tools to improve organizational security controls.

Discuss this Question (0)

No comments yet. Be the first to start the discussion!

Practice More Cyber Security Questions

Question #1
What form of phishing threat targets mobile phone users explicitly by broadcasting fraudulent SMS text messages disguised as notifications from delivery firms or financial institutions?
A. Vishing Attempt
B. Whaling Attack
C. Pharming Scam
D. Smishing (SMS Phishing)

Correct Answer: Option D


Explanation:
Smishing combines SMS short messaging with classic phishing logic, luring cellular targets to click compromised web addresses embedded in text notifications.

This question belongs to: Computer Cyber Security
Question #2
Which of the following is a method to protect data at rest?
A. Firewall
B. Intrusion detection system
C. Encryption
D. Antivirus software

Correct Answer: Option C


Explanation:
Encryption is the primary method to protect data at rest, ensuring that even if storage media is compromised, the data remains unreadable without the decryption key.

This question belongs to: Computer Cyber Security
Question #3
A malicious script designed to lie completely dormant inside an operating system registry until a specific calendar date or logic condition triggers its destructive routine is a/an:
A. Computer Worm
B. Logic Bomb
C. Macro Exploit
D. Adware Bundle

Correct Answer: Option B


Explanation:
Logic bombs are code strings embedded inside software setups programmed to launch malicious operations only when precise conditions or time metrics are satisfied.

This question belongs to: Computer Cyber Security