Free CompTIA PT0-002 Exam Braindumps (page: 23)

Which of the following provides an exploitation suite with payload modules that cover the broadest range of target system types?

  1. Nessus
  2. Metasploit
  3. Burp Suite
  4. Ethercap

Answer(s): B



A security professional wants to test an IoT device by sending an invalid packet to a proprietary service listening on TCP port 3011. Which of the following would allow the security professional to easily and programmatically manipulate the TCP header length and checksum using arbitrary numbers and to observe how the proprietary service responds?

  1. Nmap
  2. tcpdump
  3. Scapy
  4. hping3

Answer(s): C



Which of the following should a penetration tester do NEXT after identifying that an application being tested has already been compromised with malware?

  1. Analyze the malware to see what it does.
  2. Collect the proper evidence and then remove the malware.
  3. Do a root-cause analysis to find out how the malware got in.
  4. Remove the malware immediately.
  5. Stop the assessment and inform the emergency contact.

Answer(s): E



A penetration tester who is conducting a vulnerability assessment discovers that ICMP is disabled on a network segment. Which of the following could be used for a denial-of-service attack on the network segment?

  1. Smurf
  2. Ping flood
  3. Fraggle
  4. Ping of death

Answer(s): C



Viewing page 23 of 131
Viewing questions 89 - 92 out of 520 questions



Post your Comments and Discuss CompTIA PT0-002 exam prep with other Community members:

PT0-002 Exam Discussions & Posts