PT0-002 Exam Details

  • Exam Code
    :PT0-002
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :455 Q&As
  • Last Updated
    :May 31, 2026

CompTIA PT0-002 Online Questions & Answers

  • Question 341:

    During a client engagement, a penetration tester runs the following Nmap command and obtains the following output:

    nmap -sV -- script ssl-enum-ciphers -p 443 remotehost

    | TLS_ECDHE_ECDSA_WITH_RC4_128_SHA

    | TLS_ECDHE_RSA_WITH_RC4_128_SHA

    TLS_RSA_WITH_RC4_128_SHA (rsa 2048)

    TLS_RSA_WITH_RC4_128_MD5 (rsa 2048)

    Which of the following should the penetration tester include in the report?

    A. Old, insecure ciphers are in use.
    B. The 3DES algorithm should be deprecated.
    C. 2,048-bit symmetric keys are incompatible with MD5.
    D. This server should be upgraded to TLS 1.2.

  • Question 342:

    A penetration tester who is doing a security assessment discovers that a critical vulnerability is being actively exploited by cybercriminals.

    Which of the following should the tester do NEXT?

    A. Reach out to the primary point of contact
    B. Try to take down the attackers
    C. Call law enforcement officials immediately
    D. Collect the proper evidence and add to the final report

  • Question 343:

    A penetration tester is reviewing the following SOW prior to engaging with a client:

    "Network diagrams, logical and physical asset inventory, and employees' names are to be treated as client confidential. Upon completion of the engagement, the penetration tester will submit findings to the client's Chief Information Security

    Officer (CISO) via encrypted protocols and subsequently dispose of all findings by erasing them in a secure manner."

    Based on the information in the SOW, which of the following behaviors would be considered unethical? (Choose two.)

    A. Utilizing proprietary penetration-testing tools that are not available to the public or to the client for auditing and inspection
    B. Utilizing public-key cryptography to ensure findings are delivered to the CISO upon completion of the engagement
    C. Failing to share with the client critical vulnerabilities that exist within the client architecture to appease the client's senior leadership team
    D. Seeking help with the engagement in underground hacker forums by sharing the client's public IP address
    E. Using a software-based erase tool to wipe the client's findings from the penetration tester's laptop
    F. Retaining the SOW within the penetration tester's company for future use so the sales team can plan future engagements

  • Question 344:

    A penetration tester obtained the following results after scanning a web server using the dirb utility:

    ...

    GENERATED WORDS: 4612

    ---- Scanning URL: http://10.2.10.13/ ---

    +

    http://10.2.10.13/about (CODE:200|SIZE:1520)

    +

    http://10.2.10.13/home.html (CODE:200|SIZE:214)

    +

    http://10.2.10.13/index.html (CODE:200|SIZE:214)

    +

    http://10.2.10.13/info (CODE:200|SIZE:214)

    ...

    DOWNLOADED: 4612 ?FOUND: 4

    Which of the following elements is MOST likely to contain useful information for the penetration tester?

    A. index.html
    B. about
    C. info
    D. home.html

  • Question 345:

    A company provided the following network scope for a penetration test:

    169.137.1.0/24

    221.10.1.0/24

    149.14.1.0/24

    A penetration tester discovered a remote command injection on IP address 149.14.1.24 and exploited the system. Later, the tester learned that this particular IP address belongs to a third party.

    Which of the following stakeholders is responsible for this mistake?

    A. The company that requested the penetration test
    B. The penetration testing company
    C. The target host's owner
    D. The penetration tester
    E. The subcontractor supporting the test

  • Question 346:

    Penetration tester is developing exploits to attack multiple versions of a common software package. The versions have different menus and )ut.. they have a common log-in screen that the exploit must use. The penetration tester develops code to perform the log-in that can be each of the exploits targeted to a specific version.

    Which of the following terms is used to describe this common log-in code example?

    A. Conditional
    B. Library
    C. Dictionary
    D. Sub application

  • Question 347:

    A client evaluating a penetration testing company requests examples of its work.

    Which of the following represents the BEST course of action for the penetration testers?

    A. Redact identifying information and provide a previous customer's documentation.
    B. Allow the client to only view the information while in secure spaces.
    C. Determine which reports are no longer under a period of confidentiality.
    D. Provide raw output from penetration testing tools.

  • Question 348:

    In a wireless network assessment, penetration testers would like to discover and gather information about accessible wireless networks in the target area. Which of the following is the most suitable method of finding this information?

    A. Token scoping
    B. RFID cloning
    C. Wardriving
    D. WAF detection
    E. Jamming

  • Question 349:

    A penetration tester is conducting an engagement against an internet-facing web application and planning a phishing campaign.

    Which of the following is the BEST passive method of obtaining the technical contacts for the website?

    A. WHOIS domain lookup
    B. Job listing and recruitment ads
    C. SSL certificate information
    D. Public data breach dumps

  • Question 350:

    For an engagement, a penetration tester is required to use only local operating system tools for file transfer.

    Which of the following options should the penetration tester consider?

    A. Netcat
    B. WinSCP
    C. Filezilla
    D. Netstat

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.