CompTIA PT0-002 CompTIA PenTest+ Certification Exam Online Training
CompTIA PT0-002 Online Training
The questions for PT0-002 were last updated at Nov 27,2024.
- Exam Code: PT0-002
- Exam Name: CompTIA PenTest+ Certification Exam
- Certification Provider: CompTIA
- Latest update: Nov 27,2024
autonumA company uses a cloud provider with shared network bandwidth to host a web application on dedicated servers. The company’s contact with the cloud provider prevents any activities that would interfere with the cloud provider’s other customers.
When engaging with a penetration-testing company to test the application, which of the following should the company avoid?
- A . Crawling the web application’s URLs looking for vulnerabilities
- B . Fingerprinting all the IP addresses of the application’s servers
- C . Brute forcing the application’s passwords
- D . Sending many web requests per second to test DDoS protection
autonumA security firm has been hired to perform an external penetration test against a company. The only information the firm received was the company name.
Which of the following passive reconnaissance approaches would be MOST likely to yield positive initial results?
- A . Specially craft and deploy phishing emails to key company leaders.
- B . Run a vulnerability scan against the company’s external website.
- C . Runtime the company’s vendor/supply chain.
- D . Scrape web presences and social-networking sites.