exam questions

Exam PT0-003 All Questions

View all questions & answers for the PT0-003 exam

Exam PT0-003 topic 1 question 50 discussion

Actual exam question from CompTIA's PT0-003
Question #: 50
Topic #: 1
[All PT0-003 Questions]

A client recently hired a penetration testing firm to conduct an assessment of their consumer-facing web application. Several days into the assessment, the client's networking team observes a substantial increase in DNS traffic. Which of the following would most likely explain the increase in DNS traffic?

  • A. Covert data exfiltration
  • B. URL spidering
  • C. HTML scrapping
  • D. DoS attack
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
LandonSmith11
4 days, 2 hours ago
Selected Answer: A
While URL spidering (crawling the website to discover all its links) does generate HTTP requests, it primarily results in HTTP/S traffic, not a massive surge in DNS queries. DNS lookups are performed for the initial domain resolution, but subsequent requests to the same domain will often use cached DNS information.
upvoted 1 times
...
AMGWheelman
2 weeks, 5 days ago
Selected Answer: A
DNS exfiltration works by encoding data into DNS queries and sending it to a malicious DNS server controlled by the attacker. The attacker can then decode the received DNS traffic to reconstruct the stolen data.
upvoted 1 times
...
Wolf541
3 weeks, 3 days ago
Selected Answer: B
Chat GPT said URL spidering and I talk with a professional they told me that DNS exfiltration doesn’t makes sense to them. Anyone have any ideas?
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago