exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 436 discussion

Actual exam question from CompTIA's PT0-002
Question #: 436
Topic #: 1
[All PT0-002 Questions]

A penetration tester is assessing the security of a client’s externally facing cloud infrastructure. After running reconnaissance, the tester notices that several services and systems are exposed, including a web server, application server, storage buckets, and an unknown portal requiring authentication. After closely examining each of the exposed resources, the tester stumbles upon confidential documents available without any security controls. Which of the following is the most likely reason the resources are exposed?

  • A. IAM misconfiguration
  • B. Federation misconfiguration
  • C. Access token misconfiguration
  • D. Object storage misconfiguration
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Snagggggin
3 months ago
Selected Answer: D
D. Object storage misconfiguration In cloud environments, storage buckets (like those in AWS S3, Google Cloud Storage, etc.) need to be configured properly to ensure that they are not publicly accessible unless intended. Misconfigurations can lead to sensitive data being exposed to the internet without any security controls.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago