Q: 19
A penetration tester has discovered sensitive files on a system. Assuming exfiltration of the files is
part of the scope of the test, which of the following is most likely to evade DLP systems?
Options
Discussion
Honestly I'd pick D here. Hashing before emailing might confuse some DLP tools.
Probably A. Seen similar in practice questions and official guide coverage, DNS tunneling with encoding flies under most DLP setups. Recommend checking the exam objectives and lab sim resources if you want extra context on exfil methods.
D . Hashing the data before emailing might trip up some DLPs but email is heavily monitored, so feels like a trap option here.
A tbh, DNS tunneling slips by DLP more often. D looks tempting but email is usually closely inspected, so it's a trap.
Option A is the best choice, DLPs usually miss DNS tunneling while email or FTP are classic trap answers.
Be respectful. No spam.