Question 91

Which of the following documents must be signed between the penetration tester and the client to govern how any provided information is managed before, during, and after the engagement?
  • Question 92

    A tester performs a vulnerability scan and identifies several outdated libraries used within the customer SaaS product offering. Which of the following types of scans did the tester use to identify the libraries?
  • Question 93

    A client would like to have a penetration test performed that leverages a continuously updated TTPs framework and covers a wide variety of enterprise systems and networks. Which of the following methodologies should be used to BEST meet the client's expectations?
  • Question 94

    Which of the following are the MOST important items to include in the final report for a penetration test?
    (Choose two.)
  • Question 95

    The attacking machine is on the same LAN segment as the target host during an internal penetration test.
    Which of the following commands will BEST enable the attacker to conduct host delivery and write the discovery to files without returning results of the attack machine?