nerdexam
CompTIA

PT0-003 · Question #247

A penetration tester needs to evaluate the security of example.com and gather stealthy information using DNS. Which of the following is the best tool for the tester to use?

The correct answer is D. Recon-ng. Recon-ng is a powerful reconnaissance framework designed for open-source intelligence (OSINT) gathering. It includes modules for DNS enumeration, subdomain discovery, WHOIS lookups, and more - all useful for stealthy information gathering on targets like example.com.

Submitted by deeparc· Mar 6, 2026Reconnaissance and enumeration

Question

A penetration tester needs to evaluate the security of example.com and gather stealthy information using DNS. Which of the following is the best tool for the tester to use?

Options

  • ANikto
  • BInSSIDer
  • Cmasscan
  • DRecon-ng

How the community answered

(13 responses)
  • B
    8% (1)
  • D
    92% (12)

Explanation

Recon-ng is a powerful reconnaissance framework designed for open-source intelligence (OSINT) gathering. It includes modules for DNS enumeration, subdomain discovery, WHOIS lookups, and more - all useful for stealthy information gathering on targets like example.com.

Topics

#Reconnaissance#OSINT#DNS enumeration#Recon-ng

Community Discussion

No community discussion yet for this question.

Full PT0-003 Practice