PT0-002 Exam Details

  • Exam Code
    :PT0-002
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :455 Q&As
  • Last Updated
    :May 31, 2026

CompTIA PT0-002 Online Questions & Answers

  • Question 361:

    A penetration tester has established an on-path attack position and must now specially craft a DNS query response to be sent back to a target host.

    Which of the following utilities would BEST support this objective?

    A. Socat
    B. tcpdump
    C. Scapy
    D. dig

  • Question 362:

    An organization is using Android mobile devices but does not use MDM services.

    Which of the following describes an existing risk present in this scenario?

    A. Device log facility does not record actions.
    B. End users have root access by default.
    C. Unsigned applications can be installed.
    D. Push notification services require internet.

  • Question 363:

    A penetration tester is working to enumerate the PLC devices on the 10.88.88.76/24 network.

    Which of the following commands should the tester use to achieve the objective in a way that minimizes the risk of affecting the PLCs?

    A. nmap --script=s7-info -p 102 10.88.88.76/24 -T3
    B. nmap --script=wsdd-discover -p 3702 -sUlO.88.88.76/24
    C. nmap --script=iax2-version -p 4569 -sU -V 10.88.88.76/24 -T2
    D. nmap --script=xll-access -p 6000-6009 10.88.88.76/24

  • Question 364:

    Which of the following types of assessments MOST likely focuses on vulnerabilities with the objective to access specific data?

    A. An unknown-environment assessment
    B. A known-environment assessment
    C. A red-team assessment
    D. A compliance-based assessment

  • Question 365:

    A penetration tester is scanning a corporate lab network for potentially vulnerable services.

    Which of the following Nmap commands will return vulnerable ports that might be interesting to a potential attacker?

    A. nmap 192.168.1.1-5 -PU22-25,80
    B. nmap 192.168.1.1-5 -PA22-25,80
    C. nmap 192.168.1.1-5 -PS22-25,80
    D. nmap 192.168.1.1-5 -Ss22-25,80

  • Question 366:

    A penetration testing firm wants to hire three additional consultants to support a newly signed long-term contract with a major customer. The following is a summary of candidate background checks:

    Which of the following candidates should MOST likely be excluded from consideration?

    A. Candidate 1
    B. Candidate 2
    C. Candidate 3
    D. Candidate 4

  • Question 367:

    A penetration tester wants to test a list of common passwords against the SSH daemon on a network device. Which of the following tools would be BEST to use for this purpose?

    A. Hashcat
    B. Mimikatz
    C. Patator
    D. John the Ripper

  • Question 368:

    A penetration tester created the following script to use in an engagement:

    However, the tester is receiving the following error when trying to run the script:

    Which of the following is the reason for the error?

    A. The sys variable was not defined.
    B. The argv variable was not defined.
    C. The sys module was not imported.
    D. The argv module was not imported.

  • Question 369:

    A compliance-based penetration test is primarily concerned with:

    A. obtaining Pll from the protected network.
    B. bypassing protection on edge devices.
    C. determining the efficacy of a specific set of security standards.
    D. obtaining specific information from the protected network.

  • Question 370:

    A penetration tester found the following valid URL while doing a manual assessment of a web application: http://www.example.com/product.php?id=123987. Which of the following automated tools would be best to use NEXT to try to identify a vulnerability in this URL?

    A. SQLmap
    B. Nessus
    C. Nikto
    D. DirBuster

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.