Pre-Winter Sale Limited Time Flat 70% Discount offer - Ends in 0d 00h 00m 00s - Coupon code: 70spcl

The SecOps Group CCPenX-Az Certified Cloud Pentesting eXpert - Azure Exam Practice Test

Page: 1 / 3
Total 31 questions

Certified Cloud Pentesting eXpert - Azure Questions and Answers

Question 1

You have been given a breached Azure user credential for an authorized lab tenant:

james.ward@cloudcorpsec.onmicrosoft.com

After logging in, identify the Azure Tenant ID and Subscription ID associated with the account.

Options:

Question 2

The compromised service principal has Contributor access to a resource group but no direct Key Vault data-plane role. Can it immediately read Key Vault secret values?

Options:

A.

Yes, Contributor includes secret read permissions

B.

No, Contributor does not automatically grant Key Vault secret data-plane read

C.

Yes, if the vault is in the same resource group

D.

No, service principals cannot access Key Vault

Question 3

A compromised principal has permission to list role assignments. Identify which user has the User Access Administrator role at the resource group scope.

Options:

Question 4

After authenticating as the service principal, enumerate its assigned Azure RBAC role. Which role does it have?

Options:

A.

Reader

B.

Contributor

C.

Storage Account Contributor

D.

Owner

Question 5

A storage account allows public blob access. Enumerate containers and identify the public container that exposes backup files.

Options:

Question 6

Using the previously retrieved credentials, authenticate as the App Registration within the tenant and enumerate potential lateral movement vectors. Which of the following roles is assigned to the App Registration?

Options:

A.

Key Vault Secrets User

B.

Cosmos DB Built-in Data Reader

C.

Container Apps Reader Role

D.

None of the above

Question 7

During App Service enumeration, you discover that the compromised user can read App Service application settings. Find the hidden flag stored in the application settings.

Options:

Question 8

You discover a storage account named prodreportstore01. Determine whether public blob access is enabled on the storage account.

Options:

Question 9

ExcaliburCorp has recently migrated part of its infrastructure to Microsoft Azure. Shortly after the migration, the company suffered a security breach resulting in the exposure of sensitive internal data. Their investigation revealed that the attack originated from a disgruntled developer who has since disappeared. To assess and mitigate further risks, ExcaliburCorp has granted you access to a replica Azure environment with the same permissions the developer had at the time of the incident. Your task is to simulate the attacker’s actions, uncover the full extent of the compromise, and identify vulnerable configurations or services that enabled the breach.

Using the provided Azure login credentials, perform OSINT and reconnaissance to identify the Azure Active Directory/AAD Tenant ID associated with the environment.

Options:

Page: 1 / 3
Total 31 questions