PT0-002試験無料問題集「CompTIA PenTest+ Certification 認定」

A company is concerned that its cloud service provider is not adequately protecting the VMs housing its software development. The VMs are housed in a datacenter with other companies sharing physical resources. Which of the following attack types is MOST concerning to the company?

解説: (GoShiken メンバーにのみ表示されます)
ion tester is attempting to get more people from a target company to download and run an executable. Which of the following would be the.. :tive way for the tester to achieve this objective?

解説: (GoShiken メンバーにのみ表示されます)
A tester who is performing a penetration test discovers an older firewall that is known to have serious vulnerabilities to remote attacks but is not part of the original list of IP addresses for the engagement. Which of the
following is the BEST option for the tester to take?

解説: (GoShiken メンバーにのみ表示されます)
Penetration tester who was exclusively authorized to conduct a physical assessment noticed there were no cameras pointed at the dumpster for company. The penetration tester returned at night and collected garbage that contained receipts for recently purchased networking :. The models of equipment purchased are vulnerable to attack. Which of the following is the most likely next step for the penetration?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following is the BEST resource for obtaining payloads against specific network infrastructure products?

解説: (GoShiken メンバーにのみ表示されます)
During the reconnaissance phase, a penetration tester obtains the following output:
Reply from 192.168.1.23: bytes=32 time<54ms TTL=128
Reply from 192.168.1.23: bytes=32 time<53ms TTL=128
Reply from 192.168.1.23: bytes=32 time<60ms TTL=128
Reply from 192.168.1.23: bytes=32 time<51ms TTL=128
Which of the following operating systems is MOST likely installed on the host?

解説: (GoShiken メンバーにのみ表示されます)
During an assessment, a penetration tester was able to access the organization's wireless network from outside of the building using a laptop running Aircrack-ng. Which of the following should be recommended to the client to remediate this issue?

解説: (GoShiken メンバーにのみ表示されます)
Which of the following web-application security risks are part of the OWASP Top 10 v2017? (Choose two.)

解説: (GoShiken メンバーにのみ表示されます)
A penetration tester finds a PHP script used by a web application in an unprotected internal source code repository. After reviewing the code, the tester identifies the following:

Which of the following tools will help the tester prepare an attack for this scenario?

解説: (GoShiken メンバーにのみ表示されます)