New 2022 Latest Questions PT0-001 Dumps - Use Updated CompTIA Exam
Latest PT0-001 Exam Dumps CompTIA Exam from Training Expert DumpsKing
What is the duration of the PT0-001 Exam
- Number of Questions: 90
- Length of Examination: 90 minutes
- Passing score: 720
- Format: Multiple choices, multiple answers
NEW QUESTION 17
A recently concluded penetration test revealed that a legacy web application is vulnerable lo SQL injection Research indicates that completely remediating the vulnerability would require an architectural change, and the stakeholders are not m a position to risk the availability of the application Under such circumstances, which of the following controls are low-effort, short-term solutions to minimize the SQL injection risk?
(Select TWO).
- A. Identify the source of malicious input and block the IP address.
- B. Identify and sanitize all user inputs.
- C. Use a blacklist approach for SQL statements.
- D. Identify and eliminate inline SQL statements from the code.
- E. Identify and eliminate dynamic SQL from stored procedures.
- F. Use a whitelist approach for SQL statements.
Answer: A,F
NEW QUESTION 18
After performing a security assessment for a firm, the client was found to have been billed for the time the client's test environment was unavailable. The client claims to have been billed unfairly. Which of the following documents would MOST likely be able to provide guidance in such a situation?
- A. BPA
- B. EULA
- C. NDA
- D. SOW
Answer: A
NEW QUESTION 19
Instructions:
Given the following attack signatures, determine the attack type, and then identify the associated remediation to prevent the attack in the future.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
You are a security analyst tasked with hardening a web server.
You have been given a list of HTTP payloads that were flagged as malicious.
Answer:
Explanation:

NEW QUESTION 20
A penetration tester identifies the following findings during an external vulnerability scan:
Which of the following attack strategies should be prioritized from the scan results above?
- A. Cryptographically weak protocols may be intercepted.
- B. Obsolete software may contain exploitable components.
- C. Weak password management practices may be employed.
- D. Web server configurations may reveal sensitive information.
Answer: D
NEW QUESTION 21
Which of the following vulnerabilities are MOST likely to be false positives when reported by an automated scanner on a static HTML web page? (Choose two.)
- A. Support of weak cipher suites
- B. Enabled directory listing
- C. Reflected cross-site scripting
- D. Unencrypted transfer of sensitive data
- E. Missing secure flag for a sensitive cookie
- F. Command injection
- G. Insecure HTTP methods allowed
- H. Disclosure of internal system information
Answer: F,H
NEW QUESTION 22
An attacker is attempting to gain unauthorized access to a WiR network that uses WPA2-PSK Which of the following attack vectors would the attacker MOST likely use?
- A. Capture a mobile device and crack its encryption
- B. Create a rogue wireless access point
- C. Capture a three-way handshake and crack it
- D. Capture a four-way handshake and crack it
Answer: D
NEW QUESTION 23
A penetration tester has been asked to conduct OS fingerprinting with Nmap using a company-provide text file that contain a list of IP addresses.
Which of the following are needed to conduct this scan? (Select TWO).
- A. -sS
- B. -O
- C. -oX
- D. -oN
Answer: C,D
NEW QUESTION 24
Which of the following CPU registers does the penetration tester need to overwrite in order to exploit a simple buffer overflow?
- A. Destination index register
- B. Index pointer register
- C. Stack base pointer
- D. Stack pointer register
Answer: D
Explanation:
Reference:
http://www.informit.com/articles/article.aspx?p=704311&seqNum=3
NEW QUESTION 25
Which of the following would be the BEST for performing passive reconnaissance on a target's external domain?
- A. CeWL
- B. Shodan
- C. OpenVAS
- D. Peach
Answer: B
Explanation:
Explanation/Reference: https://www.securitysift.com/passive-reconnaissance/
NEW QUESTION 26
Joe a penetration tester, was able to exploit a web application behind a firewall He is trying to get a reverse shell back to his machine but the firewall blocks the outgoing traffic Ports for which of the following should the security consultant use to have the HIGHEST chance to bypass the firewall?
- A. FTP
- B. HTTP
- C. SMTP
- D. DNS
Answer: B
NEW QUESTION 27
A tester has determined that null sessions are enabled on a domain controller. Which of the following attacks can be performed to leverage this vulnerability?
- A. Pass the hash to relay credentials
- B. RID cycling to enumerate users and groups
- C. Session hijacking to impersonate a system account
- D. Password brute forcing to log into the host
Answer: C
NEW QUESTION 28
A recently concluded penetration test revealed that a legacy web application is vulnerable lo SQL injection Research indicates that completely remediating the vulnerability would require an architectural change, and the stakeholders are not m a position to risk the availability of the application Under such circumstances, which of the following controls are low-effort, short-term solutions to minimize the SQL injection risk? (Select TWO).
- A. Identity and eliminate inline SQL statements from the code.
- B. Use a blacklist approach for SQL statements.
- C. Identify the source of malicious input and block the IP address.
- D. Identify and sanitize all user inputs.
- E. Identify and eliminate dynamic SQL from stored procedures.
- F. Use a whitelist approach for SQL statements.
Answer: D,F
NEW QUESTION 29
A security consultant found a SCADA device in one of the VLANs in scope. Which of the following actions would BEST create a potentially destructive outcome against device?
- A. Launch an SMB exploit against the device.
- B. Launch an SNMP password brute force attack against the device.
- C. Launch a DNS cache poisoning attack against the device.
- D. Lunch a Nessus vulnerability scan against the device.
Answer: B
NEW QUESTION 30
After several attempts, an attacker was able to gain unauthorized access through a biometric sensor using the attacker's actual fingerprint without exploitation. Which of the following is the MOST likely explanation of what happened?
- A. The biometric device is configured more toward true negatives
- B. The biometnc device duplicated a valid user's fingerpnnt.
- C. The biometric device is tuned more toward false positives
- D. The biometric device is set to fail closed
Answer: C
NEW QUESTION 31
Which of the following tools would a penetration tester leverage to conduct OSINT? (Select TWO).
- A. Shodan
- B. Dynamo
- C. Wireshark
- D. BeEF
- E. SET
- F. Maltego
Answer: A,F
Explanation:
Explanation/Reference:
References: https://resources.infosecinstitute.com/top-five-open-source-intelligence-osint-tools/#gref
NEW QUESTION 32
A penetration tester is attempting to capture a handshake between a client and an access point by monitoring a WPA2-PSK secured wireless network. The tester is monitoring the correct channel for the identified network, but has been unsuccessful in capturing a handshake. Given the scenario, which of the following attacks would BEST assist the tester in obtaining this handshake?
- A. Deauthentication attack
- B. SSDI broadcast flood
- C. Karma attack
- D. Fragmentation attack
Answer: A
Explanation:
Explanation/Reference:
NEW QUESTION 33
A penetration tester has been asked to conduct OS fingerprinting with Nmap using a company-provide text file that contain a list of IP addresses.
Which of the following are needed to conduct this scan? (Select TWO).
- A. -sS
- B. -O
- C. -oX
- D. _sV
- E. -oN
- F. _iL
Answer: C,E
NEW QUESTION 34
A penetration tester has a full shell to a domain controller and wants to discover any user account that has not authenticated to the domain in 21 days. Which of the following commands would BEST accomplish this?
- A. dsrm -users "DN=compony.com; OU=hq CN=usera"
- B. dsquery -o -rein -limit 21
- C. dsuser -name -account -limit 3
- D. dsquery uaer -inactive 3
Answer: C
NEW QUESTION 35
......
Updated Test Engine to Practice PT0-001 Dumps & Practice Exam: https://www.dumpsking.com/PT0-001-testking-dumps.html
Pass CompTIA PT0-001 PDF Dumps Recently Updated 250 Questions: https://drive.google.com/open?id=1_XGX9QDuQ2LCbhFVo5DRNTf80hC6GGP_
