PT0-002 Exam Details

  • Exam Code
    :PT0-002
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :455 Q&As
  • Last Updated
    :May 31, 2026

CompTIA PT0-002 Online Questions & Answers

  • Question 71:

    A security engineer is trying to bypass a network IPS that isolates the source when the scan exceeds 100 packets per minute. The scope of the scan is to identify web servers in the 10.0.0.0/16 subnet. Which of the following commands should the engineer use to achieve the objective in the least amount of time?

    A. nmap -T3 -p 80 10.0.0.0/16 -- max-hostgroup 100
    B. nmap -TO -p 80 10.0.0.0/16
    C. nmap -T4 -p 80 10.0.0.0/16 -- max-rate 60
    D. nmap -T5 -p 80 10.0.0.0/16 -- min-rate 80

  • Question 72:

    A penetration tester is enumerating shares and receives the following output:

    Which of the following should the penetration tester enumerate next?

    A. dev
    B. print$
    C. home
    D. notes

  • Question 73:

    A physical penetration tester needs to get inside an organization's office and collect sensitive information without acting suspiciously or being noticed by the security guards. The tester has observed that the company's ticket gate does not scan the badges, and employees leave their badges on the table while going to the restroom.

    Which of the following techniques can the tester use to gain physical access to the office? (Choose two.)

    A. Shoulder surfing
    B. Call spoofing
    C. Badge stealing
    D. Tailgating
    E. Dumpster diving
    F. Email phishing

  • Question 74:

    Given the following code:

    $p = (80, 110, 25)

    $network = (192.168.0)

    $range = 1 .. 254

    $ErrorActionPreference = 'silentlycontinue'

    $Foreach ($add in $range)

    $Foreach ($x in $p)

    { {$ip = "{0} . {1} -F $network, $add"

    If (Test-Connection -BufferSize 32 -Count 1 -quiet -ComputerName $ip)

    {$socket = new-object System.Net. Sockets. TcpClient (andip, $x)

    If ($socket. Connected) { $ip $p open"

    $socket. Close () }

    }

    }}

    Which of the following tasks could be accomplished with the script?

    A. Reverse shell
    B. Ping sweep
    C. File download
    D. Port scan

  • Question 75:

    During a vulnerability scan a penetration tester enters the following Nmap command against all of the non-Windows clients:

    nmap -sX -T4 -p 21-25, 67, 80, 139, 8080 192.168.11.191

    The penetration tester reviews the packet capture in Wireshark and notices that the target responds with an RST packet flag set for all of the targeted ports.

    Which of the following does this information most likely indicate?

    A. All of the ports in the target range are closed.
    B. Nmap needs more time to scan the ports in the target range.
    C. The ports in the target range cannot be scanned because they are common UDP ports.
    D. All of the ports in the target range are open

  • Question 76:

    A penetration tester is explaining the MITRE ATTandCK framework to a company's chief legal counsel.

    Which of the following would the tester MOST likely describe as a benefit of the framework?

    A. Understanding the tactics of a security intrusion can help disrupt them.
    B. Scripts that are part of the framework can be imported directly into SIEM tools.
    C. The methodology can be used to estimate the cost of an incident better.
    D. The framework is static and ensures stability of a security program overtime.

  • Question 77:

    DRAG DROP

    A technician is reviewing the following report. Given this information, identify which vulnerability can be definitively confirmed to be a false positive by dragging the “false positive” token to the “Confirmed” column for each vulnerability that is a false positive.

    Select and Place:

  • Question 78:

    Which of the following documents specifies the scope, boundaries, and procedures of a penetration test, ensuring alignment with the client's security policies?

    A. ROE
    B. MOU
    C. SLA
    D. NDA

  • Question 79:

    DRAG DROP

    Place each of the following passwords in order of complexity from least complex (1) to most complex (4), based on the character sets represented Each password may be used only once.

    Select and Place:

  • Question 80:

    A security analyst needs to perform a scan for SMB port 445 over a/16 network.

    Which of the following commands would be the BEST option when stealth is not a concern and the task is time sensitive?

    A. Nmap -s 445 -Pn -T5 172.21.0.0/16
    B. Nmap -p 445 -n -T4 -open 172.21.0.0/16
    C. Nmap -sV --script=smb* 172.21.0.0/16
    D. Nmap -p 445 -max -sT 172. 21.0.0/16

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-002 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.