List of questions
Related questions
Question 25 - PT0-003 discussion
A penetration tester wants to use multiple TTPs to assess the reactions (alerted, blocked, and others) by the client's current security tools. The threat-modeling team indicates the TTPs in the list might affect their internal systems and servers. Which of the following actions would the tester most likely take?
A.
Use a BAS tool to test multiple TTPs based on the input from the threat-modeling team.
B.
Perform an internal vulnerability assessment with credentials to review the internal attack surface.
C.
Use a generic vulnerability scanner to test the TTPs and review the results with the threat-modeling team.
D.
Perform a full internal penetration test to review all the possible exploits that could affect the systems.
Your answer:
0 comments
Sorted by
Leave a comment first