nerdexam
CompTIA

PT0-003 · Question #113

A penetration tester discovers data to stage and exfiltrate. The client has authorized movement to the tester's attacking hosts only. Which of the following would be most appropriate to avoid alerting

Sign in or unlock PT0-003 to reveal the answer and full explanation for question #113. The question stem and answer options stay visible for context.

Submitted by kim_seoul· Mar 6, 2026Post-exploitation and Lateral Movement

Question

A penetration tester discovers data to stage and exfiltrate. The client has authorized movement to the tester's attacking hosts only. Which of the following would be most appropriate to avoid alerting the SOC?

Options

  • AApply UTF-8 to the data and send over a tunnel to TCP port 25.
  • BApply Base64 to the data and send over a tunnel to TCP port 80.
  • CApply 3DES to the data and send over a tunnel UDP port 53.
  • DApply AES-256 to the data and send over a tunnel to TCP port 443.

Unlock PT0-003 to see the answer

You've previewed enough free PT0-003 questions. Unlock PT0-003 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#data exfiltration#covert channels#encryption#network protocols
Full PT0-003 Practice