What practice is recommended before conducting testing to reduce risk of external interference?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

What practice is recommended before conducting testing to reduce risk of external interference?

Explanation:
Before conducting testing, secure and isolate the test environment to minimize external interference. Patch and harden the testing systems and shut off unnecessary services to reduce the attack surface and prevent noise or exploits from unrelated systems from skewing results. This setup keeps the testing observable and repeatable, ensuring that any findings come from the test activity itself rather than from exposed services or unpatched vulnerabilities. In contrast, testing on a live production network, leaving services running, or using default credentials all increase risk and invite external interference, making results unreliable and potentially dangerous.

Before conducting testing, secure and isolate the test environment to minimize external interference. Patch and harden the testing systems and shut off unnecessary services to reduce the attack surface and prevent noise or exploits from unrelated systems from skewing results. This setup keeps the testing observable and repeatable, ensuring that any findings come from the test activity itself rather than from exposed services or unpatched vulnerabilities. In contrast, testing on a live production network, leaving services running, or using default credentials all increase risk and invite external interference, making results unreliable and potentially dangerous.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy