PT0-002 Reconnaissance and Enumeration Practice Question
A penetration tester is performing passive reconnaissance and wants to find historical versions of the target website, including old pages that may contain sensitive information. Which resource should the tester use?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Wayback Machine
The Wayback Machine (archive.org) archives historical snapshots of websites. Pastebin is for pasted text, Google dorks are for search queries, and Shodan is for device discovery.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Pastebin
Why it's wrong here
Pastebin is a text-hosting service designed for sharing code snippets, logs, and other plain text. While an attacker might search Pastebin for leaked credentials or confidential data during passive reconnaissance, it does not archive historical versions of website pages. Therefore, it cannot be used to view a target's old site content, making it incorrect for this scenario.
- ✗
Shodan
Why it's wrong here
Shodan is a search engine that indexes banner information and metadata from internet-connected devices, revealing open ports, services, and potential vulnerabilities. It excels at identifying exposed infrastructure but does not capture chronological snapshots of a website's front-end content. Since the question asks specifically about accessing historical web page versions, Shodan is not the appropriate tool.
- ✓
Wayback Machine
Why this is correct
The Wayback Machine, operated by the Internet Archive, automatically crawls and preserves dated snapshots of web pages across the internet. Penetration testers use it during passive reconnaissance to review a target's historical site versions, uncovering removed content, old file paths, or legacy technology. This makes it the definitive resource for viewing a website's past states without directly interacting with the target.
- ✗
Google dorks
Why it's wrong here
Google dorks are advanced search queries that leverage operators like site, inurl, and filetype to surface indexed web content. Although they can expose vulnerable or hidden pages in Google's current index, they do not provide an archive of how a site appeared in the past. Google's cache reflects the latest crawl, not a historical timeline, so dorks cannot substitute for the Wayback Machine.
Go deeper
Related to this question
Learn chapter
PowerShell for Penetration Testing
Key term
Passive reconnaissance
Passive reconnaissance is the process of gathering information about a target system or network without directly interacting with it, using publicly available sources and stealthy observation.
Key term
Shodan
Shodan is a search engine that lets you find specific types of internet-connected devices, such as webcams, routers, and servers, by scanning the internet and indexing their services and banners.
About these practice questions
One of 777 original PT0-003 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.