CompTIA PenTest+ PT0-002 Practice Question
During the planning phase of a penetration test for a retailer that processes payment cards, it is essential to ensure that the testing activities comply with PCI DSS requirements. Which of the following activities during the penetration test requires special consideration to maintain PCI DSS compliance?
Notifying Visa and Mastercard before starting the penetration test.
Inserting a hardware keylogger into point-of-sale systems.
Social engineering employees to reveal sensitive information.
Performing wireless network sniffing in areas where cardholder data is transmitted.