ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 59 - PT0-003 discussion

Report
Export

During a penetration test, the tester identifies several unused services that are listening on all targeted internal laptops. Which of the following technical controls should the tester recommend to reduce the risk of compromise?

A.
Multifactor authentication
Answers
A.
Multifactor authentication
B.
Patch management
Answers
B.
Patch management
C.
System hardening
Answers
C.
System hardening
D.
Network segmentation
Answers
D.
Network segmentation
Suggested answer: C

Explanation:

When a penetration tester identifies several unused services listening on targeted internal laptops, the most appropriate recommendation to reduce the risk of compromise is system hardening. Here's why:

System Hardening:

Purpose: System hardening involves securing systems by reducing their surface of vulnerability. This includes disabling unnecessary services, applying security patches, and configuring systems securely.

Impact: By disabling unused services, the attack surface is minimized, reducing the risk of these services being exploited by attackers.

Comparison with Other Controls:

Multifactor Authentication (A): While useful for securing authentication, it does not address the issue of unused services running on the system.

Patch Management (B): Important for addressing known vulnerabilities but not specifically related to disabling unused services.

Network Segmentation (D): Helps in containing breaches but does not directly address the issue of unnecessary services.

System hardening is the most direct control for reducing the risk posed by unused services, making it the best recommendation.

asked 02/10/2024
Abbas Jabbari
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first