Weekend Special Sale - 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: best70

Page: 1 / 1
Total 9 questions
Exam Code: CCPenX-Az                Update: Jul 19, 2026
Exam Name: Certified Cloud Pentesting eXpert - Azure

The SecOps Group Certified Cloud Pentesting eXpert - Azure CCPenX-Az Exam Dumps: Updated Questions & Answers (July 2026)

Question # 1

Using the managed identity principal ID discovered in the previous task, identify which Azure RBAC role is assigned to it.

A.

Reader

B.

Storage Blob Data Reader

C.

Key Vault Secrets User

D.

Contributor

Question # 2

A managed identity has Key Vault Secrets User access to kv-finance-prod. Enumerate secrets and retrieve the hidden flag.

Question # 3

With access to the Web App’s Managed Identity, you can now query certain Azure Resources. Use this access to uncover the hidden secret left behind during provisioning. What is the secret?

Question # 4

Authenticate to Azure as a service principal using the credentials found in backup-config.json.

Question # 5

You’ve gained access to the Azure environment, now dig deeper. One of the accessible resources contains a hidden flag.

Question # 6

You are reviewing Azure Activity Logs after a lab compromise. Which operation indicates that an attacker reset another user’s password through Microsoft Entra ID?

A.

Microsoft.Authorization/roleAssignments/write

B.

Update user / password profile modification

C.

Microsoft.Storage/storageAccounts/listKeys/action

D.

Microsoft.KeyVault/vaults/secrets/read

Question # 7

A compromised principal has permission to list role assignments. Identify which user has the User Access Administrator role at the resource group scope.

Question # 8

From inside the App Service environment, request an Azure Resource Manager token using the managed identity endpoint. Which resource value should be requested for Azure Resource Manager access?

A.

https://graph.microsoft.com/

B.

https://management.azure.com/

C.

https://vault.azure.net/

D.

https://storage.azure.com/

Question # 9

During App Service enumeration, you discover that the compromised user can read App Service application settings. Find the hidden flag stored in the application settings.

Page: 1 / 1
Total 9 questions

Most Popular Certification Exams

Payment

       

Contact us

Site Secure

mcafee secure

TESTED 19 Jul 2026