exam questions

Exam PT0-001 All Questions

View all questions & answers for the PT0-001 exam

Exam PT0-001 topic 1 question 44 discussion

Actual exam question from CompTIA's PT0-001
Question #: 44
Topic #: 1
[All PT0-001 Questions]

During testing, a critical vulnerability is discovered on a client's core server. Which of the following should be the NEXT action?

  • A. Disable the network port of the affected service.
  • B. Complete all findings, and then submit them to the client.
  • C. Promptly alert the client with details of the finding.
  • D. Take the target offline so it cannot be exploited by an attacker.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Leonar
Highly Voted 4 years, 9 months ago
Why don't we cut off the powerline? :) The best answer is C
upvoted 12 times
...
phatboy
Highly Voted 5 years, 7 months ago
I believe the answer should be C
upvoted 9 times
...
kloug
Most Recent 2 years, 2 months ago
ccccccccc
upvoted 1 times
...
bromings
2 years, 6 months ago
Selected Answer: A
A should be the correct one. It isn't saying "Pentesting" so you assume that in "testing"stage, developers and engineers should be able to disable the network port of the affected service.
upvoted 1 times
...
miabe
2 years, 9 months ago
Selected Answer: C
looks good to me
upvoted 1 times
...
Jetlife
3 years ago
Selected Answer: C
c for sure
upvoted 1 times
...
maps7
3 years ago
when a pen tester encounters evidence of a compromised system, should IRT be notified to ensure that the organisation is aware of the attack. if the evidence appears to be "fresh", the pen-test might need to be suspended until the security breach is handled. if it is historical, the pen test team should log the discovery and continue with the task at hand. on the real world all this depends on your arrangement with the client.
upvoted 1 times
...
[Removed]
3 years, 1 month ago
Selected Answer: C
answer is C
upvoted 1 times
...
baybay
3 years, 1 month ago
Selected Answer: C
I agree with C
upvoted 1 times
...
SamAJames
3 years, 1 month ago
Selected Answer: C
Agree with C
upvoted 1 times
...
RTFM
3 years, 2 months ago
Selected Answer: C
answer is C. Discovery of a critical finding. If the penetration test identifies a critical issue with the security of the client’s environment, the testers should not wait for the delivery of their final report to communicate this issue to management. Leaving a critical vulnerability unaddressed may put the organization at an unacceptable level of risk and result in a compromise. Penetration testers who discover and validate the presence of a critical issue should follow the procedures outlined in the statement of work to immediately notify management of the issue, even if this notification reduces the degree of penetration that the testers are able to achieve during the test. verbatim whats in the book.
upvoted 2 times
...
Cock
3 years, 2 months ago
Selected Answer: C
I prefer c
upvoted 3 times
...
Ariel235788
3 years, 4 months ago
Selected Answer: B
Even if a finding is critical you do not interfere with the network or systems. Only evidence of an attack or current attack would require the action of reaching out to the client. Vuln scans would report on all vulns, not just critical.
upvoted 2 times
...
DrChats
3 years, 4 months ago
Selected Answer: C
Has to be C
upvoted 2 times
...
contender
3 years, 4 months ago
PenTest+ Study Guide - Sybex Discovery of a critical finding. If the penetration test identifies a critical issue with the security of the client’s environment, the testers should not wait for the delivery of their final report to communicate this issue to management. Leaving a critical vulnerability unaddressed may put the organization at an unacceptable level of risk and result in a compromise. Penetration testers who discover and validate the presence of a critical issue should follow the procedures outlined in the statement of work to immediately notify management of the issue, even if this notification reduces the degree of penetration that the testers are able to achieve during the test.
upvoted 2 times
...
Ariel235788
3 years, 5 months ago
Only alert the client in times of service outages or signs of compromise. If i find a vuln with a CVSS of 10, I'm going to continue my engagement until I discover all findings. Therefore the answer is actually B
upvoted 1 times
Ariel235788
3 years, 5 months ago
Also you 110% would NOT shut down the service. I.E. legacy systems. Network segmentation would be a takeaway here. As a pentester you DO NOT actively make changes to the environment. Your goal is to identify key points of vulnerabilities and weaknesses, not exploit them UNLESS determined in the ROE
upvoted 1 times
Ariel235788
3 years, 5 months ago
If D is incorrect then A is incorrect by default
upvoted 1 times
...
...
...
CybeSecN
3 years, 9 months ago
The correct answer is C 'Promptly alert the client with details of the finding.' according to the CompTIA Pentest+ Practice Test, Sybex. Note: In this scenario, since the penetration tester discovered a critical vulnerability, the tester should immediately alert the client with the details of the findings.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago