Free PT0-002 Exam Braindumps (page: 6)

Page 5 of 93

A penetration tester was conducting a penetration test and discovered the network traffic was no longer reaching the client's IP address. The tester later discovered the SOC had used sinkholing on the penetration tester's IP address.
Which of the following MOST likely describes what happened?

  1. The penetration tester was testing the wrong assets.
  2. The planning process failed to ensure all teams were notified.
  3. The client was not ready for the assessment to start.
  4. The penetration tester had incorrect contact information.

Answer(s): B



An Nmap scan shows open ports on web servers and databases. A penetration tester decides to run WPScan and SQLmap to identify vulnerabilities and additional information about those systems.
Which of the following is the penetration tester trying to accomplish?

  1. Uncover potential criminal activity based on the evidence gathered.
  2. Identify all the vulnerabilities in the environment.
  3. Limit invasiveness based on scope.
  4. Maintain confidentiality of the findings.

Answer(s): B



A company hired a penetration tester to do a social-engineering test against its employees. Although the tester did not find any employees' phone numbers on the company's website, the tester has learned the complete phone catalog was published there a few months ago.
In which of the following places should the penetration tester look FIRST for the employees' numbers?

  1. Web archive
  2. GitHub
  3. File metadata
  4. Underground forums

Answer(s): A



A penetration tester wants to identify CVEs that can be leveraged to gain execution on a Linux server that has an SSHD running.
Which of the following would BEST support this task?

  1. Run nmap with the -O, -p22, and -sC options set against the target.
  2. Run nmap with the -sV and -p22 options set against the target.
  3. Run nmap with the --script vulners option set against the target.
  4. Run nmap with the -sA option set against the target.

Answer(s): C






Post your Comments and Discuss CompTIA PT0-002 exam with other Community members:

PT0-002 Discussions & Posts