ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 365 - PT0-002 discussion

Report
Export

A penetration tester is conducting an assessment for an e-commerce company and successfully copies the user database to the local machine. After a closer review, the penetration tester identifies several high-profile celebrities who have active user accounts with the online service. Which of the following is the most appropriate next step?

A.
Contact the high-profile celebrities.
Answers
A.
Contact the high-profile celebrities.
B.
Delete the high-profile accounts.
Answers
B.
Delete the high-profile accounts.
C.
Immediately contact the client.
Answers
C.
Immediately contact the client.
D.
Record the findings in the penetration test report.
Answers
D.
Record the findings in the penetration test report.
Suggested answer: C

Explanation:

Upon discovering sensitive information, such as high-profile celebrities' user accounts, the most appropriate and ethical next step is to immediately contact the client. This allows the client to take necessary actions to secure the data and mitigate any potential risks. It is important for a penetration tester to maintain confidentiality and integrity, and directly contacting the celebrities (option A), deleting the accounts (option B), or merely recording the findings without immediate notification (option D) would not be appropriate professional responses.

asked 02/10/2024
Ammar Khan
24 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first