PT0-002 Exam Details

  • Exam Code
    :PT0-002
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :455 Q&As
  • Last Updated
    :May 31, 2026

CompTIA PT0-002 Online Questions & Answers

  • Question 351:

    A penetration tester logs in as a user in the cloud environment of a company. Which of the following Pacu modules will enable the tester to determine the level of access of the existing user?

    A. iam_enum_permissions
    B. iam_privesc_scan
    C. iam_backdoor_assume_role
    D. iam_bruteforce_permissions

  • Question 352:

    A penetration tester is working on a scoping document with a new client. The methodology the client uses includes the following:

    Pre-engagement interaction (scoping and ROE) Intelligence gathering (reconnaissance) Threat modeling Vulnerability analysis Exploitation and post exploitation Reporting

    Which of the following methodologies does the client use?

    A. OWASP Web Security Testing Guide
    B. PTES technical guidelines
    C. NIST SP 800-115
    D. OSSTMM

  • Question 353:

    A penetration tester finds a PHP script used by a web application in an unprotected internal source code repository. After reviewing the code, the tester identifies the following:

    Which of the following tools will help the tester prepare an attack for this scenario?

    A. Hydra and crunch
    B. Netcat and cURL
    C. Burp Suite and DIRB
    D. Nmap and OWASP ZAP

  • Question 354:

    A penetration tester was able to gather MD5 hashes from a server and crack the hashes easily with rainbow tables. Which of the following should be included as a recommendation in the remediation report?

    A. Stronger algorithmic requirements
    B. Access controls on the server
    C. Encryption on the user passwords
    D. A patch management program

  • Question 355:

    A security firm has been hired to perform an external penetration test against a company. The only information the firm received was the company name. Which of the following passive reconnaissance approaches would be MOST likely to yield positive initial results?

    A. Specially craft and deploy phishing emails to key company leaders.
    B. Run a vulnerability scan against the company's external website.
    C. Runtime the company's vendor/supply chain.
    D. Scrape web presences and social-networking sites.

  • Question 356:

    An Nmap scan shows open ports on web servers and databases. A penetration tester decides to run WPScan and SQLmap to identify vulnerabilities and additional information about those systems. Which of the following is the penetration tester trying to accomplish?

    A. Uncover potential criminal activity based on the evidence gathered.
    B. Identify all the vulnerabilities in the environment.
    C. Limit invasiveness based on scope.
    D. Maintain confidentiality of the findings.

  • Question 357:

    A penetration tester runs a reconnaissance script and would like the output in a standardized machine-readable format in order to pass the data to another application.

    Which of the following is the best for the tester to use?

    A. JSON
    B. Lists
    C. XLS
    D. Trees

  • Question 358:

    A penetration tester is conducting an assessment against a group of publicly available web servers and notices a number of TCP resets returning from one of the web servers. Which of the following is MOST likely causing the TCP resets to occur during the assessment?

    A. The web server is using a WAF.
    B. The web server is behind a load balancer.
    C. The web server is redirecting the requests.
    D. The local antivirus on the web server Is rejecting the connection.

  • Question 359:

    A penetration tester is preparing to perform activities for a client that requires minimal disruption to company operations.

    Which of the following are considered passive reconnaissance tools? (Choose two.)

    A. Wireshark
    B. Nessus
    C. Retina
    D. Burp Suite
    E. Shodan
    F. Nikto

  • Question 360:

    A penetration tester is contracted to attack an oil rig network to look for vulnerabilities. While conducting the assessment, the support organization of the rig reported issues connecting to corporate applications and upstream services for data acquisitions.

    Which of the following is the MOST likely culprit?

    A. Patch installations
    B. Successful exploits
    C. Application failures
    D. Bandwidth limitations

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.