exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 161 discussion

Actual exam question from CompTIA's PT0-002
Question #: 161
Topic #: 1
[All PT0-002 Questions]

A penetration tester received a 16-bit network block that was scoped for an assessment. During the assessment, the tester realized no hosts were active in the provided block of IPs and reported this to the company. The company then provided an updated block of IPs to the tester. Which of the following would be the most appropriate NEXT step?

  • A. Terminate the contract.
  • B. Update the ROE with new signatures.
  • C. Scan the 8-bit block to map additional missed hosts.
  • D. Continue the assessment.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Manzer
Highly Voted 2 years, 3 months ago
Selected Answer: B
Scope has changed. Update the ROE with new signatures.
upvoted 7 times
...
Neolot
Highly Voted 2 years, 3 months ago
Selected Answer: B
i think B is the right answer.
upvoted 5 times
...
deeden
Most Recent 10 months, 4 weeks ago
Selected Answer: B
I agree with updating initial document, but shouldn't it be SOW (not ROE) for changing the scope, objectives, and deliverables?
upvoted 1 times
...
mehewas855
1 year, 1 month ago
Selected Answer: B
Client is the BOSS, update ROE to be sure, you have said on paper and continue the assessment. Scanning out of scope hosts like C says is not your job to do and may be illegal.
upvoted 1 times
...
solutionz
1 year, 6 months ago
Selected Answer: B
The Rules of Engagement (ROE) define the scope, boundaries, and guidelines for a penetration test. When the scoped network block is updated, it is essential to ensure that the new block of IPs is properly documented in the ROE to maintain legal and ethical boundaries. Therefore, the most appropriate next step would be: B. Update the ROE with new signatures. Explanation: Option B: By updating the ROE to include the new IP block, the tester ensures that all parties are in agreement regarding the updated scope of the assessment. This step maintains the legal and ethical standing of the engagement.
upvoted 2 times
...
AaronS1990
1 year, 10 months ago
Selected Answer: B
B. Update the ROE and THEN..... C. Scan the 8-bit block to map additional missed hosts. B first though
upvoted 1 times
...
KingIT_ENG
1 year, 10 months ago
B ROE with New Signature
upvoted 2 times
...
nickwen007
1 year, 11 months ago
The most appropriate next step would be C. Scan the 8-bit block to map additional missed hosts. After obtaining the updated block of IPs from the company, the tester should perform a scan to map any missed hosts in the new block of IPs
upvoted 1 times
...
cy_analyst
1 year, 11 months ago
Selected Answer: D
Since the company has provided an updated block of IPs, the most appropriate next step for the penetration tester is to continue the assessment with the new block of IPs. It is possible that the previous block was not properly configured or that no hosts were active at the time of the assessment. It is also possible that the new block of IPs contains additional hosts that were not included in the previous block. Updating the ROE with new signatures may be necessary but not the immediate next step.
upvoted 2 times
KingIT_ENG
1 year, 10 months ago
C is correct Update ROE
upvoted 2 times
KingIT_ENG
1 year, 10 months ago
sorry B
upvoted 2 times
...
...
...
Debbi12
1 year, 12 months ago
Continuing the assessment without updating the Rules of Engagement (ROE) is not necessarily inappropriate, but it is always a best practice to ensure that the ROE are up-to-date and accurately reflect the scope and goals of the assessment. The ROE serve as a formal agreement between the penetration tester and the client, outlining the limits and boundaries of the assessment and clarifying what actions are allowed and not allowed. Updating the ROE with new information, such as a change in the network block being assessed, can help to avoid misunderstandings or conflicts during the assessment and ensure that the assessment is carried out in a controlled and ethical manner. Therefore, updating the ROE is a recommended step before continuing the assessment, but it may not be strictly necessary in every situation. The decision to update the ROE or not would depend on the specific details of the scenario and the policies and procedures of the organization conducting the assessment.
upvoted 3 times
...
Lee_Lah
2 years, 3 months ago
Selected Answer: B
Absolutely B
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...