PT0-002 Exam Question 171

During the assessment of a client's cloud and on-premises environments, a penetration tester was able to gain ownership of a storage object within the cloud environment using the provided on-premises credentials. Which of the following best describes why the tester was able to gain access?
  • PT0-002 Exam Question 172

    A penetration tester is performing reconnaissance for a web application assessment. Upon investigation, the tester reviews the robots.txt file for items of interest.
    INSTRUCTIONS
    Select the tool the penetration tester should use for further investigation.
    Select the two entries in the robots.txt file that the penetration tester should recommend for removal.

    PT0-002 Exam Question 173

    A company recently moved its software development architecture from VMs to containers. The company has asked a penetration tester to determine if the new containers are configured correctly against a DDoS attack.
    Which of the following should a tester perform first?
  • PT0-002 Exam Question 174

    A penetration tester wants to scan a target network without being detected by the client's IDS. Which of the following scans is MOST likely to avoid detection?
  • PT0-002 Exam Question 175

    Given the following output:
    User-agent:*
    Disallow: /author/
    Disallow: /xmlrpc.php
    Disallow: /wp-admin
    Disallow: /page/
    During which of the following activities was this output MOST likely obtained?