False Positive — CompTIA PenTest+ (PT0-002) Practice Questions
A false positive occurs when a vulnerability scanner or detection tool incorrectly reports a weakness that does not actually exist or is not exploitable in the given environment. The PenTest+ exam addresses false positives because acting on them wastes remediation resources and damages credibility with clients. Testers are expected to manually validate scanner findings to confirm whether reported vulnerabilities are genuine before including them in deliverables.
Free questions on false positive
What is a false positive in vulnerability scanning?
Free question · easy · full answer + explanation