exam questions

Exam PT1-002 All Questions

View all questions & answers for the PT1-002 exam

Exam PT1-002 topic 1 question 37 discussion

Actual exam question from CompTIA's PT1-002
Question #: 37
Topic #: 1
[All PT1-002 Questions]

A penetration tester was conducting a penetration test and discovered the network traffic was no longer reaching the client's IP address. The tester later discovered the SOC had used sinkholing on the penetration tester's IP address. Which of the following BEST describes what happened?

  • A. The penetration tester was testing the wrong assets
  • B. The planning process failed to ensure all teams were notified
  • C. The client was not ready for the assessment to start
  • D. The penetration tester had incorrect contact information
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
RVP20
Highly Voted 3 years, 2 months ago
Selected Answer: B
I think the given answer is correct (B) . B- As the question mentioned SOC (Security Operation Centre) team which is one of the teams that should be notified before conducting the test and based on the following word in the question (sinkholing) it seems that the SOC team was NOT notified regarding that test. * Sinkholing is a technique for manipulating data flow in a network. you redirect traffic from its intended destination to the server of your choice.
upvoted 8 times
...
bieecop
Most Recent 1 year, 9 months ago
Selected Answer: B
Sinkholing refers to the practice of redirecting or blocking network traffic to a specific IP address or range of IP addresses. In this case, the SOC (Security Operations Center) implemented sinkholing on the penetration tester's IP address, effectively preventing network traffic from reaching the tester's system. The reason for this action can be attributed to a failure in the planning process. When conducting a penetration test, it is essential to have clear communication and coordination between the penetration tester, the client, and any involved teams or departments. The failure to notify the SOC about the penetration test or to coordinate with them properly resulted in the sinkholing of the tester's IP address.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago