TRIVIA – Penetration Testing

Oct 27, 2025

Sonja Soderlund is an Oregon-based B2B freelance writer. Whether writing about mainframe computers, educational technology, or sustainable retail, she strives to bring clarity to complex issues. Connect with her or LinkedIn.

Mainframes have long been known for their unmatched reliability and security—but even the most trusted systems can hide surprises beneath the surface. As technology evolves, so do the tactics of those trying to exploit it. Penetration testing (pen testing), or “ethical hacking,” has become an essential way to uncover weaknesses that traditional audits might miss.

Planet Mainframe recently published an article by Mark Wilson (Technical Director at Vertali and Chief Editor and Producer of Cheryl Watson’s Tuning Letter) on the subject, in which he states that “the goal [of pen testing] “is not disruption but discovery: to identify cracks in a system before someone else does.”

Think you know your stuff when it comes to pen testing? Take our quiz to test your knowledge of vulnerabilities, testing techniques, and defense strategies that keep the world’s most critical systems safe.

Editor’s note from Penney Berryman — A Gold Star goes out to those who called out the error in the previous round of Trivia!

1. What is the main objective of a pen test?

 
 
 
 

2. Which two main stages typically make up a pen test on the mainframe?

 
 
 
 

3. During the footprinting stage, which type of data might a tester review to gather system information?

 
 
 
 

4. Name one tool commonly used for data gathering during mainframe footprinting.

 
 
 
 

5. In the exploitation phase, testers often begin with what type of account?

 
 
 
 

6. Which of the following weaknesses might pen testers exploit on a mainframe?

 
 
 
 

7. Why do mainframe security weaknesses often persist for years?

 
 
 
 

8. RACF, ACF2, and TSS are examples of what type of mainframe component?

 
 
 
 

9. Why is pen testing on the mainframe considered critical for risk management?

 
 
 
 

10. Which of the following is not usually listed as one of the benefits of pen testing?

 
 
 
 

1 Comment

  1. BILL C

    I disagree with 7. Limited and/or incorrect admin access is a prime reason for persistence of mainframe security weakness. There are limited numbers of QUALIFIED admins in the mainframe space.

    Reply

Submit a Comment

Your email address will not be published. Required fields are marked *

Sign up to receive the latest mainframe information

This field is for validation purposes and should be left unchanged.

Read More

❓Python Programming Trivia

❓Python Programming Trivia

We often describe Python as a “modern” language, but its story spans decades of technological change, cultural shifts, and unexpected platforms. What began as a small side project in the Netherlands evolved into one of the most widely used programming languages in the...

❓Mainframe Professional Skills Trivia

❓Mainframe Professional Skills Trivia

Our last trivia quiz explored the legacy of mainframe pioneers, and this week we’re going to continue looking into the lineage of skills in mainframe professional practice, examining how early design and operational decisions shaped the way mainframe expertise is...

❓ Workforce and Training Trivia

❓ Workforce and Training Trivia

Happy 2026—and welcome to a whole new year of Planet Mainframe Trivia! As our January theme focuses on Workforce and Training, this quiz looks at mainframe pioneers and the early decisions that shaped how mainframe skills are learned and passed on. Mainframe expertise...