PT0-002 Exam Details

  • Exam Code
    :PT0-002
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :455 Q&As
  • Last Updated
    :May 31, 2026

CompTIA PT0-002 Online Questions & Answers

  • Question 141:

    Company.com has hired a penetration tester to conduct a phishing test. The tester wants to set up a fake log-in page and harvest credentials when target employees click on links in a phishing email. Which of the following commands would best help the tester determine which cloud email provider the log-in page needs to mimic?

    A. dig company.com MX
    B. whois company.com
    C. cur1 www.company.com
    D. dig company.com A

  • Question 142:

    Performing a penetration test against an environment with SCADA devices brings additional safety risk because the:

    A. devices produce more heat and consume more power.
    B. devices are obsolete and are no longer available for replacement.
    C. protocols are more difficult to understand.
    D. devices may cause physical world effects.

  • Question 143:

    A penetration tester is performing a social engineering penetration test and was able to create a remote session. Which of the following social engineering techniques was most likely successful?

    A. SMS phishing
    B. Dumpster diving
    C. Executive impersonation attack
    D. Browser exploitation framework

  • Question 144:

    A penetration tester is conducting an assessment of an organization that has both a web and mobile application. While testing the user profile page, the penetration tester notices that additional data is returned in the API response, which is not displayed in the web user interface.

    Which of the following is the most effective technique to extract sensitive user data?

    A. Compare PI I from data leaks to publicly exposed user profiles.
    B. Target the user profile page with a denial-of-service attack.
    C. Target the user profile page with a reflected XSS attack.
    D. Compare the API response fields to GUI fields looking for PH.

  • Question 145:

    A company hired a penetration-testing team to review the cyber-physical systems in a manufacturing plant. The team immediately discovered the supervisory systems and PLCs are both connected to the company intranet.

    Which of the following assumptions, if made by the penetration-testing team, is MOST likely to be valid?

    A. PLCs will not act upon commands injected over the network.
    B. Supervisors and controllers are on a separate virtual network by default.
    C. Controllers will not validate the origin of commands.
    D. Supervisory systems will detect a malicious injection of code/commands.

  • Question 146:

    A penetration tester has gained access to part of an internal network and wants to exploit on a different network segment. Using Scapy, the tester runs the following command:

    Which of the following represents what the penetration tester is attempting to accomplish?

    A. DNS cache poisoning
    B. MAC spoofing
    C. ARP poisoning
    D. Double-tagging attack

  • Question 147:

    Which of the following tools is primarily used for network scanning and enumeration, identifying open ports, services, and vulnerabilities on a network?

    A. Burp Suite
    B. Wireshark
    C. Metasploit
    D. Nmap

  • Question 148:

    A final penetration test report has been submitted to the board for review and accepted. The report has three findings rated high.

    Which of the following should be the NEXT step?

    A. Perform a new penetration test.
    B. Remediate the findings.
    C. Provide the list of common vulnerabilities and exposures.
    D. Broaden the scope of the penetration test.

  • Question 149:

    A tester who is performing a penetration test on a website receives the following output:

    Warning: mysql_fetch_array() expects parameter 1 to be resource, boolean given in /var/www/search.php on line 62

    Which of the following commands can be used to further attack the website?

    A. var adr= `../evil.php?test=' + escape(document.cookie);
    B. ../../../../../../../../../../etc/passwd
    C. /var/www/html/index.php;whoami
    D. 1 UNION SELECT 1, DATABASE(),3-

  • Question 150:

    An executive needs to use Wi-Fi to connect to the company's server while traveling. While looking for available Wi-Fi connections, the executive notices an available access point to a hotel chain that is not available where the executive is staying.

    Which of the following attacks is the executive most likely experiencing?

    A. Data modification
    B. Amplification
    C. Captive portal
    D. Evil twin

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.