Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 4 fuera de 43 páginas
Examen

Test Bank for CompTIA PenTest+ PT0-001 Cert Guide, 1st Edition by Omar Santos

Document preview thumbnail
Vista previa 4 fuera de 43 páginas

Test Bank for CompTIA PenTest+ PT0-001 Cert Guide, 1st Edition by Omar Santos

Vista previa del contenido

CompTIA PenTest+ PT0-001 Cert Guide
ST
– 1st Edition
UV

TEST BANK
IA
_A

Omar Santos
PP
RO
Comprehensive Test Bank for Instructors and

Students
VE

© Omar Santos
D?
All rights reserved. Reproduction or distribution without permission is prohibited.
??

©STUDYSTREAM

, CompTIA® PenTest+ Cert Guide
Chapter 1 Introduction to Ethical Hacking and Penetration Testing
ST
1) Which of these describes a scenario in which the tester starts with credentials but not full
documentation of the network infrastructure?
A) Black-box test
B) White-box test
C) Gray-box test
UV
D) Blue-box test
Answer: C

2) Which of the following would an ethical hacker not participate in?
A) Unauthorized access
IA
B) Responsible disclosure
C) Documentation
D) Black-box testing
Answer: A
_A
3) Which of these attack types involves tricking the user into disclosing information or taking
action?
A) DDoS
B) Ransomware
C) Social engineering
PP
D) Botnet
Answer: C

4) What type of attacker is most likely to be motivated purely by financial profit?
A) Hacktivist
RO
B) Nation-state
C) Insider threat
D) Organized crime
Answer: D
VE
5) What type of attack encrypts user files until the victim pays a fee?
A) Ransomware
B) Denial of Service attack
C) Hacktivism
D) Shoulder surfing
D?
Answer: A

6) IoT devices are most susceptible to being used for what type of attack?
A) Ransomware
B) DDoS
??
C) Man-in-the-Middle
D) Social engineering
Answer: B


1
Copyright © 2019 Pearson Education, Inc.

, 7) What type of attacker steals sensitive data and then reveals it to the public in order to
embarrass the target?
A) Kidnapper
ST
B) Nation state
C) Organized crime
D) Hacktivist
Answer: D
UV
8) What type of tests would be most important to conduct to find out whether hackers could use
the Internet to compromise your client’s online ordering system?
A) Web application tests
B) Network infrastructure tests
C) Wireless network tests
IA
D) Physical facility tests
Answer: A

9) What type of tests would be most important to conduct to find out whether the client’s WAPs
are properly secured?
_A
A) Web application tests
B) Network infrastructure tests
C) Wireless network tests
D) Physical facility tests
Answer: C
PP
10) What type of tests would be most important to conduct to find out whether unauthorized
people can reach the company’s server rooms?
A) Web application tests
B) Network infrastructure tests
RO
C) Wireless network tests
D) Physical facility tests
Answer: D

11) What type of tests would be most important to conduct to find out whether there are any
VE
poorly secured firewalls, routers, and switches on a LAN?
A) Web application tests
B) Network infrastructure tests
C) Wireless network tests
D) Physical facility tests
D?
Answer: B

12) Which testing methodology involves seven phases, including pre-engagement interactions,
intelligence gathering, threat modeling, and vulnerability analysis?
A) PTES
??
B) PCI DSS
C) Penetration Testing Framework
D) OSSTMM
Answer: A
2
Copyright © 2019 Pearson Education, Inc.

, 13) Which testing methodology has key sections including Operational Security Metrics, Trust
Analysis, Work Flow, and Human Security Testing?
A) PTES
ST
B) PCI DSS
C) Penetration Testing Framework
D) OSSTMM
Answer: D
UV
14) Which testing methodology pertains to the specific needs of credit card processing systems?
A) PTES
B) PCI DSS
C) Penetration Testing Framework
D) OSSTMM
IA
Answer: B

15) Which testing methodology focuses on the hands-on aspects of penetration testing and
provides links to many tools in an HTML format?
A) PTES
_A
B) PCI DSS
C) Penetration Testing Framework
D) OSSTMM
Answer: C
PP
16) What document created by the National Institute of Standards and Technology provides
organizations with guidelines on planning and conducting information security testing?
A) Special Publication (SP) 800-115
B) General Publication (GP) 2006-110
C) Special Publication (SP) 2018-01
RO
D) International Publication (IP) 2016-330
Answer: A

17) Which of these is not a requirement for a typical penetration testing environment?
A) Closed network
VE
B) Virtualized computing environment
C) Sign-in credentials for the systems to be tested
D) Practice targets
Answer: C
D?
18) Which of these can help protect the client in the event that you break something during a
test?
A) Social engineering
B) WPA
C) Open network
??
D) Virtual environment
Answer: D



3
Copyright © 2019 Pearson Education, Inc.

Información del documento

Subido en
5 de noviembre de 2025
Número de páginas
43
Escrito en
2025/2026
Tipo
Examen
Contiene
Preguntas y respuestas
$20.49

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Seller avatar
Los indicadores de reputación están sujetos a la cantidad de artículos vendidos por una tarifa y las reseñas que ha recibido por esos documentos. Hay tres niveles: Bronce, Plata y Oro. Cuanto mayor reputación, más podrás confiar en la calidad del trabajo del vendedor.
StudyStream
3.9
(14)
Vendido
113
Seguidores
30
Artículos
1222
Última venta
4 días hace


Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes