312-50 Exam QuestionsBrowse all questions from this exam

312-50 Exam - Question 24


A penetration tester was hired to perform a penetration test for a bank. The tester began searching for IP ranges owned by the bank, performing lookups on the bank's DNS servers, reading news articles online about the bank, watching what times the bank employees come into work and leave from work, searching the bank's job postings (paying special attention to IT related jobs), and visiting the local dumpster for the bank's corporate office. What phase of the penetration test is the tester currently in?

Show Answer
Correct Answer: D

The phase described involves gathering a wide range of information about the bank without actively engaging with it or directly probing its defenses. This includes searching for IP ranges, performing lookups, reading publicly available news articles, observing employee schedules, checking job postings, and going through the dumpster. These activities are characteristic of passive information gathering, where the tester is collecting data without directly interacting with the target systems or network.

Discussion

1 comment
Sign in to comment
greeklover84Option: D
Jun 9, 2024

agree D.