List of questions
Related questions
Question 99 - PT0-002 discussion
In an unprotected network file repository, a penetration tester discovers a text file containing usernames and passwords in cleartext and a spreadsheet containing data for 50 employees, including full names, roles, and serial numbers. The tester realizes some of the passwords in the text file follow the format: <name- serial_number>. Which of the following would be the best action for the tester to take NEXT with this information?
A.
Create a custom password dictionary as preparation for password spray testing.
B.
Recommend using a password manage/vault instead of text files to store passwords securely.
C.
Recommend configuring password complexity rules in all the systems and applications.
D.
Document the unprotected file repository as a finding in the penetration-testing report.
Your answer:
0 comments
Sorted by
Leave a comment first