Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam PT0-003 All Questions
Exam PT0-003 All Questions

View all questions & answers for the PT0-003 exam

CompTIA PenTest+ PT0-003 Question # 30 Topic 4 Discussion

PT0-003 Exam Topic 4 Question 30 Discussion:
Question #: 30
Topic #: 4

During a penetration test, the tester gains full access to the application's source code. The application repository includes thousands of code files. Given that the assessment timeline is very short, which of the following approaches would allow the tester to identify hard-coded credentials most effectively?


A.

Run TruffleHog against a local clone of the application


B.

Scan the live web application using Nikto


C.

Perform a manual code review of the Git repository


D.

Use SCA software to scan the application source code


Get Premium PT0-003 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.