nerdexam
CompTIA

PT0-003 · Question #6

While conducting a reconnaissance activity, a penetration tester extracts the following information: Emails: - [email protected] - [email protected] - [email protected] Which of the following risks should…

The correct answer is A. Unauthorized access to the network. The collected email addresses (e.g., [email protected], [email protected]) can be used for phishing, spear phishing, or password spraying attacks. These attacks aim to gain unauthorized access to internal systems or user accounts, making this the most immediate and relevant risk.

Submitted by salim_om· Mar 6, 2026Network Security

Question

While conducting a reconnaissance activity, a penetration tester extracts the following information:

Emails:

Which of the following risks should the tester use to leverage an attack as the next step in the security assessment?

Options

  • AUnauthorized access to the network
  • BExposure of sensitive servers to the internet
  • CLikelihood of SQL injection attacks
  • DIndication of a data breach in the company

How the community answered

(26 responses)
  • A
    73% (19)
  • B
    4% (1)
  • C
    15% (4)
  • D
    8% (2)

Explanation

The collected email addresses (e.g., [email protected], [email protected]) can be used for phishing, spear phishing, or password spraying attacks. These attacks aim to gain unauthorized access to internal systems or user accounts, making this the most immediate and relevant risk.

Topics

#Penetration testing#Reconnaissance#Social engineering#Attack vectors

Community Discussion

No community discussion yet for this question.

Full PT0-003 Practice