CompTIA Security+ (SY0-701) — Question 611
Which of the following is a common, passive reconnaissance technique employed by penetration testers in the early phases of an engagement?
Answer options
- A. Open-source intelligence
- B. Port scanning
- C. Pivoting
- D. Exploit validation
Correct answer: A
Explanation
Open-source intelligence is the correct answer because it involves gathering information from publicly available sources without direct interaction with the target. In contrast, port scanning, pivoting, and exploit validation are more active techniques that can alert the target to the tester's presence and are typically performed at later stages of an engagement.