ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 271 - PT0-002 discussion

Report
Export

A penetration tester is required to perform a vulnerability scan that reduces the likelihood of false positives and increases the true positives of the results. Which of the following would MOST likely accomplish this goal?

A.
Using OpenVAS in default mode
Answers
A.
Using OpenVAS in default mode
B.
Using Nessus with credentials
Answers
B.
Using Nessus with credentials
C.
Using Nmap as the root user
Answers
C.
Using Nmap as the root user
D.
Using OWASP ZAP
Answers
D.
Using OWASP ZAP
Suggested answer: B

Explanation:

Using credentials during a vulnerability scan allows the scanner to gather more detailed information about the target system, including installed software, patch levels, and configuration settings. This helps to reduce the likelihood of false positives and increase the true positives of the results. Nessus is a popular vulnerability scanner that supports credential-based scanning and can be used to accomplish this goal. OpenVAS and Nmap are also popular scanning tools, but using default mode or running as the root user alone may not provide the necessary level of detail for accurate vulnerability identification. OWASP ZAP is a web application scanner and may not be applicable for non-webbased targets.

asked 02/10/2024
javier mungaray
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first