PT0-003 Exam Details

  • Exam Code
    :PT0-003
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :404 Q&As
  • Last Updated
    :Jun 09, 2026

CompTIA PT0-003 Online Questions & Answers

  • Question 291:

    A company has hired a penetration tester to deploy and set up a rogue access point on the network.

    Which of the following is the BEST tool to use to accomplish this goal?

    A. Wireshark
    B. Aircrack-ng
    C. Kismet
    D. Wifite

  • Question 292:

    Which of the following protocols would a penetration tester most likely utilize to exfiltrate data covertly and evade detection?

    A. FTP
    B. HTTPS
    C. SMTP
    D. DNS

  • Question 293:

    The following file was obtained during reconnaissance:

    Which of the following is most likely to be successful if a penetration tester achieves non-privileged user access?

    A. Exposure of other users' sensitive data
    B. Unauthorized access to execute binaries via sudo
    C. Hijacking the default user login shells
    D. Corrupting the skeleton configuration file

  • Question 294:

    A penetration tester finds an internal MySQL server with no firewall restrictions. The tester runs:

    mysql -u root -p

    No password is required, and the tester gains full access.

    Which vulnerability BEST describes this condition?

    A. Improper session management
    B. Default credentials
    C. Null authentication configuration
    D. SQL injection

  • Question 295:

    A penetration tester finished a security scan and uncovered numerous vulnerabilities on several hosts.

    Based on the targets' EPSS and CVSS scores, which of the following targets is the most likely to get attacked?

    A. Target 1: EPSS Score = 0.6 and CVSS Score = 4
    B. Target 2: EPSS Score = 0.3 and CVSS Score = 2
    C. Target 3: EPSS Score = 0.6 and CVSS Score = 1
    D. Target 4: EPSS Score = 0.4 and CVSS Score = 4.5

  • Question 296:

    Which of the following technologies is most likely used with badge cloning? (Select two).

    A. NFC
    B. RFID
    C. Bluetooth
    D. Modbus
    E. Zigbee
    F. CAN bus

  • Question 297:

    A penetration tester needs to evaluate the order in which the next systems will be selected for testing.

    Given the following output:

    Which of the following targets should the tester select next?

    A. fileserver
    B. hrdatabase
    C. legaldatabase
    D. financesite

  • Question 298:

    A company becomes concerned when the security alarms are triggered during a penetration test.

    Which of the following should the company do NEXT?

    A. Halt the penetration test.
    B. Contact law enforcement.
    C. Deconflict with the penetration tester.
    D. Assume the alert is from the penetration test.

  • Question 299:

    An external legal firm is conducting a penetration test of a large corporation.

    Which of the following would be most appropriate for the legal firm to use in the subject line of a weekly email update?

    A. Privileged & Confidential Status Update
    B. Action Required Status Update
    C. Important Weekly Status Update
    D. Urgent Status Update

  • Question 300:

    During a penetration test, the tester identifies several unused services that are listening on all targeted internal laptops.

    Which of the following technical controls should the tester recommend to reduce the risk of compromise?

    A. Multifactor authentication
    B. Patch management
    C. System hardening
    D. Network segmentation

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.