
EC-CouncilCertified Penetration Testing Professional
Domain 2Objective 1
Open-Source Intelligence (OSINT) CPENT Practice Questions (Page 2)
Part of the Information Gathering and Social Engineering domain, which makes up ~9% of our current practice bank.
39questions here
8free pages
10concepts
Questions 6–10
- 6
You are performing OSINT for a client and have downloaded a publicly available PDF brochure from their website. You want to extract hidden information such as the author's username, the software used to create the document, and the original file creation date. Which tool or technique is most appropriate for this task?
Select an answer first - 7
What is the primary purpose of an OSINT report in a penetration test?
Select an answer first - 8
Which phase of the penetration testing methodology typically incorporates OSINT activities?
Select an answer first - 9
During a penetration test, you are tasked with mapping the external infrastructure of a client's domain. You want to identify the authoritative DNS servers, the registrar, and the IP address of the primary web server. Which command or tool would you use first to gather this information?
Select an answer first - 10
You have completed the OSINT phase of a penetration test and gathered a large amount of data, including email addresses, subdomains, metadata from public documents, and Google dork results. You need to present these findings to the client in a way that is actionable for the next phase of testing. What is the most appropriate way to structure the OSINT report?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.