ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 99 - PT0-002 discussion

Report
Export

In an unprotected network file repository, a penetration tester discovers a text file containing usernames and passwords in cleartext and a spreadsheet containing data for 50 employees, including full names, roles, and serial numbers. The tester realizes some of the passwords in the text file follow the format: <name- serial_number>. Which of the following would be the best action for the tester to take NEXT with this information?

A.
Create a custom password dictionary as preparation for password spray testing.
Answers
A.
Create a custom password dictionary as preparation for password spray testing.
B.
Recommend using a password manage/vault instead of text files to store passwords securely.
Answers
B.
Recommend using a password manage/vault instead of text files to store passwords securely.
C.
Recommend configuring password complexity rules in all the systems and applications.
Answers
C.
Recommend configuring password complexity rules in all the systems and applications.
D.
Document the unprotected file repository as a finding in the penetration-testing report.
Answers
D.
Document the unprotected file repository as a finding in the penetration-testing report.
Suggested answer: D
asked 02/10/2024
Mahmoud Ziada
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first