PenTest Plus V3 Reconnaissance Techniques Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 15, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. Shodan is a search engine that indexes information about ____.

Submit
Please wait...
About This Quiz
PenTest Plus V3 Reconnaissance Techniques Quiz - Quiz

This quiz evaluates your understanding of reconnaissance techniques covered in CompTIA PenTest Plus V3. It tests passive and active information gathering, OSINT tools, network mapping, and target identification methods essential for penetration testers. Master reconnaissance to build a solid foundation for effective security assessments and ethical hacking practices.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. Which of the following best describes the relationship between reconnaissance and vulnerability assessment?

Submit

3. Information gathered from public records, news articles, and company websites is part of ____.

Submit

4. Which tool can be used to trace the route packets take to reach a destination host?

Submit

5. True or False: Reverse DNS lookups can help identify hostnames associated with IP addresses.

Submit

6. Which reconnaissance method involves analyzing publicly available documents like job postings and technical papers?

Submit

7. The process of identifying systems and services on a network is called ____.

Submit

8. What information can be obtained from reviewing a target's SSL/TLS certificates?

Submit

9. True or False: Reconnaissance is considered part of the attack chain and must be performed legally within scope.

Submit

10. Which of the following can be gathered through social engineering during reconnaissance?

Submit

11. Which reconnaissance phase involves gathering information without directly interacting with the target system?

Submit

12. Which tool is used to identify live hosts on a network segment?

Submit

13. True or False: Active reconnaissance is less likely to trigger security alerts than passive reconnaissance.

Submit

14. Which reconnaissance technique uses DNS queries to map network topology without sending direct traffic?

Submit

15. Footprinting is the process of gathering information about a target's ____.

Submit

16. What does nmap primarily identify during network reconnaissance?

Submit

17. Which of the following is an example of open-source intelligence (OSINT)?

Submit

18. Active reconnaissance differs from passive reconnaissance in that it ____.

Submit

19. Which tool is commonly used for passive WHOIS lookups and domain registration information?

Submit

20. What is the primary purpose of DNS enumeration during reconnaissance?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Shodan is a search engine that indexes information about ____.
Which of the following best describes the relationship between...
Information gathered from public records, news articles, and company...
Which tool can be used to trace the route packets take to reach a...
True or False: Reverse DNS lookups can help identify hostnames...
Which reconnaissance method involves analyzing publicly available...
The process of identifying systems and services on a network is called...
What information can be obtained from reviewing a target's SSL/TLS...
True or False: Reconnaissance is considered part of the attack chain...
Which of the following can be gathered through social engineering...
Which reconnaissance phase involves gathering information without...
Which tool is used to identify live hosts on a network segment?
True or False: Active reconnaissance is less likely to trigger...
Which reconnaissance technique uses DNS queries to map network...
Footprinting is the process of gathering information about a target's...
What does nmap primarily identify during network reconnaissance?
Which of the following is an example of open-source intelligence...
Active reconnaissance differs from passive reconnaissance in that it...
Which tool is commonly used for passive WHOIS lookups and domain...
What is the primary purpose of DNS enumeration during reconnaissance?
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!