PT0-003 Exam Details

  • Exam Code
    :PT0-003
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :404 Q&As
  • Last Updated
    :Jun 09, 2026

CompTIA PT0-003 Online Questions & Answers

  • Question 281:

    A penetration tester is performing a network security assessment. The tester wants to intercept communication between two users and then view and potentially modify transmitted data.

    Which of the following types of on-path attacks would be best to allow the penetration tester to achieve this result?

    A. DNS spoofing
    B. ARP poisoning
    C. VLAN hopping
    D. SYN flooding

  • Question 282:

    A penetration tester is performing network reconnaissance. The tester wants to gather information about the network without causing detection mechanisms to flag the reconnaissance activities.

    Which of the following techniques should the tester use?

    A. Sniffing
    B. Banner grabbing
    C. TCP/UDP scanning
    D. Ping sweeps

  • Question 283:

    A penetration tester is contracted to attack an oil rig network to look for vulnerabilities. While conducting the assessment, the support organization of the rig reported issues connecting to corporate applications and upstream services for data acquisitions.

    Which of the following is the MOST likely culprit?

    A. Patch installations
    B. Successful exploits
    C. Application failures
    D. Bandwidth limitations

  • Question 284:

    A penetration tester gains access to a Windows machine and wants to further enumerate users with native operating system credentials.

    Which of the following should the tester use?

    A. route
    B. nbtstat
    C. net
    D. whoami

  • Question 285:

    A penetration tester writes the following script, which is designed to hide communication and bypass some restrictions on a client's network:

    Which of the following best describes the technique the tester is applying?

    A. DNS poisoning
    B. DNS infiltration
    C. DNS trail
    D. DNS tunneling

  • Question 286:

    A penetration tester is assessing a wireless network. Although monitoring the correct channel and SSID, the tester is unable to capture a handshake between the clients and the AP.

    Which of the following attacks is the MOST effective to allow the penetration tester to capture a handshake?

    A. Key reinstallation
    B. Deauthentication
    C. Evil twin
    D. Replay

  • Question 287:

    A penetration tester discovers data to stage and exfiltrate. The client has authorized movement to the tester's attacking hosts only.

    Which of the following would be most appropriate to avoid alerting the SOC?

    A. Apply UTF-8 to the data and send over a tunnel to TCP port 25.
    B. Apply Base64 to the data and send over a tunnel to TCP port 80.
    C. Apply 3DES to the data and send over a tunnel UDP port 53.
    D. Apply AES-256 to the data and send over a tunnel to TCP port 443.

  • Question 288:

    A penetration tester needs to exploit a vulnerability in a wireless network that has weak encryption to perform traffic analysis and decrypt sensitive information.

    Which of the following techniques would best allow the penetration tester to have access to the sensitive information?

    A. Bluejacking
    B. SSID spoofing
    C. Packet sniffing
    D. ARP poisoning

  • Question 289:

    A penetration tester assesses an application allow list and has limited command-line access on the Windows system.

    Which of the following would give the penetration tester information that could aid in continuing the test?

    A. mmc.exe
    B. icacls.exe
    C. nltest.exe
    D. rundll.exe

  • Question 290:

    With one day left to complete the testing phase of an engagement, a penetration tester obtains the following results from an Nmap scan:

    Which of the following tools should the tester use to quickly identify a potential attack path?

    A. msfvenom
    B. SearchSploit
    C. sqlmap
    D. BeEF

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.