exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 166 discussion

Actual exam question from CompTIA's PT0-002
Question #: 166
Topic #: 1
[All PT0-002 Questions]

A company that requires minimal disruption to its daily activities needs a penetration tester to perform information gathering around the company's web presence.
Which of the following would the tester find MOST helpful in the initial information-gathering steps? (Choose two.)

  • A. MX records
  • B. Zone transfers
  • C. DNS forward and reverse lookups
  • D. Internet search engines
  • E. Externally facing open ports
  • F. Shodan results
Show Suggested Answer Hide Answer
Suggested Answer: DF 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
ryanzou
Highly Voted 2 years, 1 month ago
Selected Answer: DF
DF are correct
upvoted 11 times
...
KeToopStudy
Highly Voted 10 months, 1 week ago
Selected Answer: CD
There is no point in doing a Shodan search for web presence. It will offer intel on IoT devices and other stuff but not specifically to web. I say CD is the answer as DNS lookups and search engines both offer information about web presence of a company
upvoted 5 times
...
surfuganda
Most Recent 7 months, 3 weeks ago
Selected Answer: CD
Options A, C, and D are generally considered non-intrusive and are less likely to cause disruption during the information-gathering phase of a penetration test. A is mail related, so not useful regarding the company's web presence. C and D remain.
upvoted 1 times
...
Sleezyglizzy
8 months, 3 weeks ago
Selected Answer: DF
Off of research those the ones that makes the most sense.
upvoted 2 times
...
solutionz
1 year, 3 months ago
Selected Answer: CD
In the context of performing information gathering around a company's web presence with minimal disruption, the penetration tester would likely focus on gathering publicly accessible information without directly probing or interacting with the company's systems in potentially disruptive ways. The two options that would be MOST helpful in the initial information-gathering steps are: C. DNS forward and reverse lookups D. Internet search engines Explanation: Option C (DNS forward and reverse lookups): DNS forward lookups can help identify IP addresses associated with domain names, and reverse lookups can provide the domain names associated with IP addresses. This information can be crucial for mapping the company's web presence. Option D (Internet search engines): Utilizing search engines like Google allows the tester to gather publicly available information about the company's web presence, including websites, subdomains, social media profiles, and more, without engaging in potentially disruptive activities.
upvoted 3 times
...
Anarckii
1 year, 5 months ago
Selected Answer: CD
The question states " web presence " this would mean C and D wouldn't it? Shodan is a web application that provides information on IoT devices, not a companies web presence
upvoted 2 times
...
[Removed]
1 year, 6 months ago
Selected Answer: DF
The two options that would be MOST helpful in the initial information-gathering steps are D. Internet search engines and F. Shodan results. Internet search engines can be used to find information about the company's web presence, such as websites, social media profiles, and online documents. This can provide valuable insights into the company's infrastructure and help the tester identify potential attack vectors. Shodan is a search engine that can be used to identify internet-facing devices and systems, including open ports and services. This can help the tester identify potential vulnerabilities and attack vectors in the company's external network.
upvoted 2 times
...
AaronS1990
1 year, 7 months ago
Wouldn't it be D and F as search engines is of course no issue and shodan is passive recon....
upvoted 1 times
...
KingIT_ENG
1 year, 8 months ago
D and F for sure
upvoted 2 times
...
nickwen007
1 year, 8 months ago
The most helpful in the initial information-gathering steps would be C. DNS forward and reverse lookups, and D. Internet search engines. DNS forward and reverse lookups can be used to gain an understanding of the web infrastructure around a company, while Internet search engines can be used to find any mentions of the company on public websites and forums.
upvoted 1 times
...
kenechi
1 year, 8 months ago
Selected Answer: CD
CD is correct.
upvoted 1 times
[Removed]
1 year, 8 months ago
I think D and F
upvoted 2 times
...
...
[Removed]
1 year, 8 months ago
A and F is correct
upvoted 1 times
[Removed]
1 year, 8 months ago
Sorry D and F is corrrect
upvoted 2 times
...
...
kloug
1 year, 8 months ago
deeeeeee
upvoted 1 times
...
RRabbit_111
1 year, 9 months ago
Selected Answer: CD
consider: I choose C. DNS forward and reverse lookups over F. Shodan results because, in the initial information-gathering phase, the tester needs to have a broad understanding of the company's web presence, and DNS lookups can provide that. DNS lookups can give the tester a list of domain names associated with the company and the IP addresses of servers hosting those domain names. This information can be used to identify potential targets for further testing and to gain a better understanding of a company's web presence. On the other hand, Shodan is a search engine that allows users to find specific types of devices (webcams, routers, servers, etc.) connected to the Internet using a variety of filters. It could be used by a tester as a reconnaissance tool to find open ports, services and vulnerabilities, but it's limited to specific type of devices.
upvoted 2 times
shakevia463
1 year, 9 months ago
i think its interesting option A is mx records which you can lookup with mxtoolbox.... i think stick to D and F although i would check the dns and where the web server and mailserver show first.
upvoted 4 times
...
RRabbit_111
1 year, 9 months ago
there is a similar question on the dump. ill go with DF to keep consistent.
upvoted 5 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago