Free CompTIA PenTest+ PT0-002 Practice Question

You are performing a penetration test on a web application that requires testing for Cross-Site Scripting (XSS) vulnerabilities. You need to select a tool that allows for both automated scanning and the ability to intercept and modify HTTP requests in real-time to test for reflected XSS. Which tool would be the best fit for this specific requirement?

  • Gobuster

  • Nikto

  • Burp Suite

  • OWASP ZAP

This question's topic:
CompTIA PenTest+ PT0-002 / 
Tools and Code Analysis
Your Score:

Check or uncheck an objective to set which questions you will receive.