Chapter 3

Information Gathering and Vulnerability Scanning

This chapter covers the following topics related to Domain 2.0 (Information Gathering and Vulnerability Scanning) of the CompTIA PenTest+ PT0-002 certification exam:

  • 2.1 Given a scenario, perform passive reconnaissance.

  • 2.2 Given a scenario, perform active reconnaissance.

  • 2.3 Given a scenario, analyze the results of a reconnaissance exercise.

  • 2.4 Given a scenario, perform vulnerability scanning.

The first step a threat actor takes when planning an attack is to gather information about the target. This act of information gathering is known as reconnaissance. Attackers use scanning and enumeration tools along with public information available on the Internet to build a dossier about ...

Get CompTIA PenTest+ PT0-002 Cert Guide, 2nd Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.