During the planning phase of a penetration test, what term is used to describe the definitive list of assets such as wireless networks, IP ranges, and domains that are approved for testing?
The term 'Target list/in-scope assets' refers to the list of assets that are explicitly defined and approved for testing during a penetration test. This ensures that the assessment is within the agreed-upon and authorized boundaries and that testers do not inadvertently test systems that are out of scope, which could lead to legal implications or other forms of organizational risk.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What specifically should be included in a target list for a penetration test?
Open an interactive chat with Bash
Why is it important to have a definitive target list during a penetration test?
Open an interactive chat with Bash
What could happen if a penetration test exceeds the target list?