The correct selection emphasizes that examiners gather evidence of discovered weaknesses, detail them accurately, and provide them to the correct contacts for resolution. Adjusting the target’s systems or broadcasting issues publicly violates professional conduct and the engagement terms. Patching without coordination exceeds typical expectations for the role and disregards the contractual boundaries.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What does 'mutually agreed scope' mean in penetration testing?
Open an interactive chat with Bash
Why is it important to document weaknesses instead of fixing them during a penetration test?
Open an interactive chat with Bash
What are the consequences of publicizing vulnerabilities found during a penetration test?