PT1-002 CompTIA PenTest+

Loading demo links...

Showing 1–3 of 10 questions

Question 1

A penetration tester is preparing to perform activities for a client that requires minimal disruption to company operations. Which of the following are considered passive reconnaissance tools? (Choose two.)

Select all that apply, then click Submit answer.

  • Wireshark

  • Nessus

  • Retina

  • Burp Suite

  • Shodan

  • Nikto

Question 2

Which of the following expressions in Python increase a variable val by one (Choose two.)

Select all that apply, then click Submit answer.

  • val++

  • +val

  • val=(val+1)

  • ++val

  • val=val++

  • val+=1

Question 3

A penetration tester is reviewing the following SOW prior to engaging with a client:

“Network diagrams, logical and physical asset inventory, and employees’ names are to be treated as client confidential. Upon completion of the engagement, the penetration tester will submit findings to the client’s Chief Information Security Officer (CISO) via encrypted protocols and subsequently dispose of all findings by erasing them in a secure manner.”

Based on the information in the SOW, which of the following behaviors would be considered unethical? (Choose two.)

Select all that apply, then click Submit answer.

  • Utilizing proprietary penetration-testing tools that are not available to the public or to the client for auditing and inspection

  • Utilizing public-key cryptography to ensure findings are delivered to the CISO upon completion of the engagement

  • Failing to share with the client critical vulnerabilities that exist within the client architecture to appease the client’s senior leadership team

  • Seeking help with the engagement in underground hacker forums by sharing the client’s public IP address

  • Using a software-based erase tool to wipe the client’s findings from the penetration tester’s laptop

  • Retaining the SOW within the penetration tester’s company for future use so the sales team can plan future engagements