A penetration tester has been assigned to perform an external penetration assessment of a company. Which of the following steps would BEST help with the passive-information-gathering process? (Choose two.)
A) Wait outside of the company's building and attempt to tailgate behind an employee.
B) Perform a vulnerability scan against the company's external netblock, identify exploitable vulnerabilities, and attempt to gain access.
C) Use domain and IP registry websites to identify the company's external netblocks and external facing applications.
D) Search social media for information technology employees who post information about the technologies they work with.
E) Identify the company's external facing webmail application, enumerate user accounts and attempt password guessing to gain access.
Correct Answer:
Verified
Q17: Consumer-based IoT devices are often less secure
Q18: A healthcare organization must abide by local
Q19: A penetration tester is performing ARP spoofing
Q20: A company requested a penetration tester review
Q21: A penetration tester is testing a banking
Q23: While monitoring WAF logs, a security analyst
Q24: A penetration tester compromises a system that
Q25: Which of the following would be the
Q26: A penetration tester is required to perform
Q27: A penetration tester was able to retrieve
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents