New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

ISC2 CSSLP Exam - Topic 3 Question 100 Discussion

Actual exam question for ISC2's CSSLP exam
Question #: 100
Topic #: 3
[All CSSLP Questions]

You work as a security manager for BlueWell Inc. You are performing the external vulnerability testing, or penetration testing to get a better snapshot of your organization's security posture. Which of the following penetration testing techniques will you use for searching paper disposal areas for unshredded or otherwise improperly disposed-of reports?

Show Suggested Answer Hide Answer
Suggested Answer: C

Dumpster diving technique is used for searching paper disposal areas for unshredded or otherwise improperly disposed-of reports.

Answer B is incorrect. In scanning and probing technique, various scanners, like a port scanner, can reveal information about a

network's infrastructure and enable an intruder to access the network's unsecured ports.

Answer D is incorrect. Demon dialing technique automatically tests every phone line in an exchange to try to locate modems that are

attached to the network.

Answer A is incorrect. In sniffing technique, protocol analyzer can be used to capture data packets that are later decoded to collect

information such as passwords or infrastructure configurations.


Contribute your Thoughts:

0/2000 characters
Rutha
2 months ago
I agree, dumpster diving is crucial for finding sensitive info.
upvoted 0 times
...
Frederick
2 months ago
Wait, is dumpster diving actually a thing in pen testing?
upvoted 0 times
...
Freeman
2 months ago
Definitely dumpster diving! That's the right technique for that.
upvoted 0 times
...
Serina
3 months ago
Not sure about this... sounds a bit too old school.
upvoted 0 times
...
Karima
3 months ago
Scanning and probing seems more relevant, though.
upvoted 0 times
...
Teri
3 months ago
I practiced a question similar to this, and I believe dumpster diving is definitely the right choice for finding unshredded documents.
upvoted 0 times
...
Tammi
3 months ago
Scanning and probing sounds familiar, but I don't think it applies to searching for paper reports.
upvoted 0 times
...
Evangelina
4 months ago
I'm not entirely sure, but I feel like sniffing is more about network traffic, not physical documents.
upvoted 0 times
...
Marti
4 months ago
I think I remember something about dumpster diving being a technique used to find sensitive information in discarded materials.
upvoted 0 times
...
Denae
4 months ago
This is a good one. I remember learning about dumpster diving as a way to physically access sensitive information that wasn't properly destroyed. I'm confident that C is the right answer here.
upvoted 0 times
...
Hailey
4 months ago
I'm a little confused by this question. Sniffing, scanning, and demon dialing don't really seem relevant to searching for improperly disposed-of documents. I'm leaning towards C, but I want to double-check my understanding before answering.
upvoted 0 times
...
Dorethea
4 months ago
Okay, let me think this through step-by-step. We're looking for a technique to search paper disposal areas for unshredded documents. Dumpster diving seems like the most logical choice here. I'm going to go with C.
upvoted 0 times
...
Crista
5 months ago
Hmm, I'm not totally sure about this one. I know dumpster diving is a common penetration testing technique, but I'm not 100% confident that's the right answer here. I'll have to think it through a bit more.
upvoted 0 times
...
Sue
5 months ago
This one seems pretty straightforward. I think the answer is C - Dumpster diving. That's the technique used to search for improperly disposed-of documents.
upvoted 0 times
...

Save Cancel