exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 33 discussion

Actual exam question from CompTIA's PT0-002
Question #: 33
Topic #: 1
[All PT0-002 Questions]

A penetration tester has been hired to perform a physical penetration test to gain access to a secure room within a client's building. Exterior reconnaissance identifies two entrances, a WiFi guest network, and multiple security cameras connected to the Internet.
Which of the following tools or techniques would BEST support additional reconnaissance?

  • A. Wardriving
  • B. Shodan
  • C. Recon-ng
  • D. Aircrack-ng
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
RRabbit_111
Highly Voted 2 years, 3 months ago
Selected Answer: B
B. Shodan Shodan is a search engine for Internet-connected devices. It allows a user to search for specific types of devices or services, such as cameras, servers, or routers, connected to the Internet. This tool can be useful in identifying additional information about the client's building, such as the make and model of the security cameras, or any other devices connected to the Internet. It can provide additional information that would be useful in identifying potential vulnerabilities that can be exploited during the physical penetration test. Wardriving is a technique to detect wireless access points, Aircrack-ng is a tool that allows you to crack wifi password, Recon-ng is a reconnaissance tool that can be used to gather information about a target, but it is more useful for web-based reconnaissance.
upvoted 9 times
RRabbit_111
2 years, 3 months ago
"Recon-ng is not intended to compete with existing frameworks, as it is designed exclusively for web-based open source reconnaissance. " - from the Recon-ng site.
upvoted 4 times
...
Sebatian20
1 year ago
Don't dispute your answer but this is another stupid question. The end result seek is physical penetration into the server room, the tested has already located several camera - using Shodan is like pointless as these cameras been found and finding servers etc is irrelevant as they don't help to physically penetrate the room.
upvoted 1 times
XanALaOM00
9 months, 2 weeks ago
Agreed.. if this is an actual question on the exam, it's semantically poor and everyone who believes the answer here makes any sense is made dumber for believing so. This type of question / answer requires one to turn off your brain and blindly answer based on Comptia's material.
upvoted 1 times
...
...
...
rangertau
Highly Voted 2 years, 7 months ago
Selected Answer: B
Check the book
upvoted 5 times
...
MeisAdriano
Most Recent 9 months ago
Selected Answer: B
Recon-ng, wardriving and aircrack-ng are for wireless attack and not physical access. With Shodan an attacker could use webcam to prepare an efficient tailgating (physical) attack.
upvoted 1 times
...
Slick0
10 months ago
Selected Answer: C
Doesn't Recon-ng have a Shodan module in it anyway?
upvoted 1 times
...
Etc_Shadow28000
10 months, 1 week ago
Selected Answer: C
C. Shodan. Given that the security cameras are connected to the Internet, Shodan can be used to gather additional information about these devices, such as their make, model, and any known vulnerabilities. Analysis of Other Options: A. Wardriving: While wardriving (searching for WiFi networks from a moving vehicle) can be useful for identifying wireless networks, it is less specific than Shodan for gathering detailed information about Internet-connected devices. C. Recon-ng: Recon-ng is a reconnaissance framework that can be used for gathering open-source intelligence (OSINT). While useful, it is more general-purpose and not specifically focused on identifying Internet-connected devices like Shodan. D. Aircrack-ng: Aircrack-ng is a suite of tools for assessing WiFi network security, including cracking WEP and WPA-PSK keys. This tool is more relevant for wireless network security testing rather than Internet-connected device reconnaissance.
upvoted 1 times
Etc_Shadow28000
10 months, 1 week ago
Answer B….. hit wrong option when posting
upvoted 1 times
...
...
shaneo007
1 year, 1 month ago
In the context of a physical penetration test, Recon-ng would be a better choice for additional reconnaissance within the building.
upvoted 1 times
...
KeToopStudy
1 year, 4 months ago
Selected Answer: B
The fact that the question specifies there were multiple cameras connected to the internet it's a clear indicator that there is an incentive for the pentester to go and use Shodan for further investigation.
upvoted 1 times
...
FnordyClovers
1 year, 8 months ago
B. Shodan Shodan can be used to search for Internet-connected devices like security cameras to gather more information that may assist the physical penetration test. Wardriving, Recon-ng, and Aircrack-ng are more focused on wireless enumeration and exploitation, which is not the primary objective based on the information provided. Shodan will help maximize reconnaissance on the identified security cameras. However, if further wireless testing is in scope, these tools may become more relevant as the test progresses.
upvoted 1 times
...
solutionz
1 year, 9 months ago
Selected Answer: B
Among the options provided, the best tool for performing additional reconnaissance on a target that includes Internet-connected devices, like security cameras, is: B. Shodan
upvoted 1 times
...
xviruz2kx
2 years, 1 month ago
Since the objective is to perform a physical penetration test, the best option for additional reconnaissance would be Recon-ng. Recon-ng is a tool that automates the process of information gathering and reconnaissance, providing the tester with a large number of data sources to gather information about the target, such as employees' social media profiles, publicly available documents, and network infrastructure details. This information can help the tester identify potential weaknesses in the physical security of the target's building, such as employee schedules, physical access controls, or CCTV camera blind spots.
upvoted 2 times
...
nickwen007
2 years, 2 months ago
Shodan is a search engine that allows users to find information about Internet-connected systems, such as routers, servers, and webcams. With Shodan, the penetration tester can quickly locate vulnerable systems connected to the WiFi guest network, and can also identify which security cameras are connected to the Internet, allowing for further reconnaissance.
upvoted 3 times
...
cy_analyst
2 years, 2 months ago
Selected Answer: B
B. Shodan as you can search for internet faced devices.
upvoted 3 times
[Removed]
2 years, 2 months ago
Yes Shodan is correct answer
upvoted 3 times
...
...
kloug
2 years, 2 months ago
answer a Wardriving: This involves driving or walking around the building to identify and map out the Wi-Fi access points and their locations. This can provide information on the types of wireless networks that are present, their security configurations, and the presence of any vulnerabilities that can be exploited.
upvoted 3 times
[Removed]
2 years, 2 months ago
answer is shodan
upvoted 2 times
...
Vikt0r
2 years, 2 months ago
Re-read the question. "BEST support additional reconnaissance" The wardriving is completed already. The correct answer is B.
upvoted 5 times
[Removed]
2 years, 2 months ago
correct shodan is answer
upvoted 1 times
...
...
...
Treebeard88
2 years, 5 months ago
Selected Answer: C
You can add a shodan API to recon-ng if you have a pro account https://www.hackers-arise.com/post/2019/05/16/osint-part-2-using-recon-ng-to-find-the-same-profile-across-multiple-sites
upvoted 1 times
...
bieecop
2 years, 5 months ago
Selected Answer: C
Recon-ng is a full-featured reconnaissance framework
upvoted 2 times
...
mypixmania
2 years, 5 months ago
recon-ng also has shodan module
upvoted 2 times
...
ma3ks
2 years, 6 months ago
Selected Answer: B
shodan is about IoT devices on public, cameras are on internet so should be it
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago