Certification Training for PT0-001 Exam Dumps Test Engine [2023]
Nov 15, 2023 Step by Step Guide to Prepare for PT0-001 Exam
NEW QUESTION # 18
A penetration tester is required to perform OSINT on staff at a target company after completing the infrastructure aspect. Which of the following would be the BEST step for the penetration tester to take?
- A. Send spoofed emails to staff to see if staff will respond with sensitive information.
- B. Visit the client and use impersonation to obtain information from staff.
- C. Obtain staff information by calling the company and using social engineering techniques.
- D. Search the Internet for information on staff such as social networking sites.
Answer: D
NEW QUESTION # 19
During a penetration test, a host is discovered that appears to have been previously compromised and has an active outbound connection. After verifying the network activity is malicious, which of the following should the tester do?
- A. Note the finding and continue the assessment.
- B. Take action and shut it down immediately.
- C. Inform the client to shut it down and investigate.
- D. Inform the client and allow them to respond.
Answer: D
NEW QUESTION # 20
Which of the following commands starts the Metasploit database?
- A. msfconsole
- B. db_init
- C. workspace
- D. db_connect
- E. msfvenom
Answer: A
Explanation:
Explanation
References: https://www.offensive-security.com/metasploit-unleashed/msfconsole/
NEW QUESTION # 21
A penetration tester has obtained access to an IP network subnet that contains ICS equipment intercommunication. Which of the following attacks is MOST likely to succeed in creating a physical effect?
- A. Record and replay
- B. Blind SQL injection
- C. Supervisory server SMB
- D. DNS cache poisoning
Answer: C
NEW QUESTION # 22
Click the exhibit button.
A penetration tester is performing an assessment when the network administrator shows the tester a packet sample that is causing trouble on the network. Which of the following types of attacks should the tester stop?
- A. SMTP relay
- B. ARP spoofing
- C. SNMP brute forcing
- D. DNS cache poisoning
Answer: C
NEW QUESTION # 23
An attacker performed a MITM attack against a mobile application. The attacker is attempting to manipulate the application's network traffic via a proxy tool. The attacker only sees limited traffic as cleartext. The application log files indicate secure SSL/TLS connections are failing. Which of the following is MOST likely preventing proxying of all traffic?
- A. Misconfigured routes
- B. Closed ports
- C. Strong cipher suites
- D. Certificate pinning
Answer: D
NEW QUESTION # 24
A client has voiced concern about the number of companies being breached by remote attackers, who are looking for trade secrets. Which of the following BEST describes the type of adversaries this would identify?
- A. Script kiddies
- B. Hacktivist groups
- C. Insider threats
- D. APT actors
Answer: D
Explanation:
Explanation/Reference:
Reference: https://en.wikipedia.org/wiki/Advanced_persistent_threat
NEW QUESTION # 25
A technician is reviewing the following report. Given this information, identify which vulnerability can be definitively confirmed to be a false positive by dragging the "false positive" token to the "Confirmed" column for each vulnerability that is a false positive.
Answer:
Explanation:
NEW QUESTION # 26
A penetration tester has performed a pivot to a new Linux device on a different network. The tester writes the following command:
for m in {1..254..1};do ping -c 1 192.168.101.$m; done
Which of the following BEST describes the result of running this command?
- A. Port scan
- B. Live host identification
- C. Service enumeration
- D. Denial of service
Answer: B
NEW QUESTION # 27
A security analyst has uncovered a suspicious request in the logs for a web application. Given the following URL:
- A. User enumeration
- B. Directory traversal
- C. Cross-site scripting
- D. Remote file inclusion
Answer: A
NEW QUESTION # 28
A penetration tester locates a few unquoted service paths during an engagement.
Which of the following can the tester attempt to do with these?
- A. Attempt privilege escalation attacks.
- B. Attempt DLL hijacking attacks.
- C. Attempt to locate weak file and folder permissions.
- D. Attempt to crack the service account passwords.
Answer: A
NEW QUESTION # 29
A security consultant is trying to attack a device with a previous identified user account.
Which of the following types of attacks is being executed?
- A. Reverse shell attack
- B. Pass the hash attack
- C. DLL injection attack
- D. Credential dump attack
Answer: B
NEW QUESTION # 30
Which of the following types of intrusion techniques is the use of an "under-the-door tool" during a physical security assessment an example of?
- A. Lockpicking
- B. Lock bumping
- C. Lock bypass
- D. Egress sensor triggering
Answer: C
Explanation:
Explanation/Reference:
Reference: https://www.triaxiomsecurity.com/2018/08/16/physical-penetration-test-examples/
NEW QUESTION # 31
Which of the following actions BEST matches a script kiddie's threat actor?
- A. Exfiltrate network diagrams to perform lateral movement.
- B. Deface the website of a company in search of retribution.
- C. Steal credit cards from the database and sell them in the deep web.
- D. Install a rootkit to maintain access to the corporate network.
Answer: C
Explanation:
Explanation/Reference: https://www.skyetechnologies.com/2020/08/20/meet-the-threat-actors-part-1-script-kiddies/
NEW QUESTION # 32
Joe a penetration tester, was able to exploit a web application behind a firewall He is trying to get a reverse shell back to his machine but the firewall blocks the outgoing traffic Ports for which of the following should the security consultant use to have the HIGHEST chance to bypass the firewall?
- A. FTP
- B. HTTP
- C. SMTP
- D. DNS
Answer: B
NEW QUESTION # 33
......
CompTIA PT0-001, also known as the CompTIA PenTest+ Certification Exam, is a certification exam that measures the knowledge and skills of professionals in the field of penetration testing. PT0-001 exam covers various aspects of security assessment and testing, including vulnerability assessment, exploitation, and post-exploitation techniques. The PT0-001 exam is designed to validate the skills and knowledge of the candidates in identifying, exploiting, and reporting on network vulnerabilities.
Ultimate Guide to Prepare PT0-001 Certification Exam for CompTIA PenTest+: https://www.actualtorrent.com/PT0-001-questions-answers.html