PT0-003 Exam Details

  • Exam Code
    :PT0-003
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :404 Q&As
  • Last Updated
    :Jun 09, 2026

CompTIA PT0-003 Online Questions & Answers

  • Question 301:

    A penetration tester needs to perform a test on a finance system that is PCI DSS v3.2.1 compliant.

    Which of the following is the MINIMUM frequency to complete the scan of the system?

    A. Weekly
    B. Monthly
    C. Quarterly
    D. Annually

  • Question 302:

    A penetration tester identifies the following open ports during a network enumeration scan:

    Which of the following commands did the tester use to get this output?

    A. nmap -Pn -A 10.10.10.10
    B. nmap -sV 10.10.10.10
    C. nmap -Pn -w 10.10.10.10
    D. nmap -sV -Pn -p- 10.10.10.10

  • Question 303:

    A client warns the assessment team that an ICS application is maintained by the manufacturer. Any tampering of the host could void the enterprise support terms of use.

    Which of the following techniques would be most effective to validate whether the application encrypts communications in transit?

    A. Utilizing port mirroring on a firewall appliance
    B. Installing packet capture software on the server
    C. Reconfiguring the application to use a proxy
    D. Requesting that certificate pinning be disabled

  • Question 304:

    DRAG DROP

    A technician is reviewing the following report. Given this information, identify which vulnerability can be definitively confirmed to be a false positive by dragging the “false positive” token to the “Confirmed” column for each vulnerability that is a false positive.

    Select and Place:

  • Question 305:

    Which of the following is a term used to describe a situation in which a penetration tester bypasses physical access controls and gains access to a facility by entering at the same time as an employee?

    A. Badge cloning
    B. Shoulder surfing
    C. Tailgating
    D. Site survey

  • Question 306:

    A penetration tester needs to collect information over the network for further steps in an internal assessment.

    Which of the following would most likely accomplish this goal?

    A. ntlmrelayx.py -t 192.168.1.0/24 -1 1234
    B. nc -tulpn 1234 192.168.1.2
    C. responder.py -I eth0 -wP
    D. crackmapexec smb 192.168.1.0/24

  • Question 307:

    During an assessment, a penetration tester obtains an NTLM hash from a legacy Windows machine.

    Which of the following tools should the penetration tester use to continue the attack?

    A. Responder
    B. Hydra
    C. BloodHound
    D. CrackMapExec

  • Question 308:

    A Chief Information Security Officer wants a penetration tester to evaluate the security awareness level of the company's employees.

    Which of the following tools can help the tester achieve this goal?

    A. Metasploit
    B. Hydra
    C. SET
    D. WPScan

  • Question 309:

    A security analyst is conducting an unknown environment test from 192.168 3.3. The analyst wants to limit observation of the penetration tester's activities and lower the probability of detection by intrusion protection and detection systems.

    Which of the following Nmap commands should the analyst use to achieve.

    This objective?

    A. Nmap 192.168.5.5
    B. Map atalength 2.192.168.5.5
    C. Nmap 10.5.2.2.168.5.5
    D. Map canflags SYNFIN 192.168.5.5

  • Question 310:

    In a file stored in an unprotected source code repository, a penetration tester discovers the following line of code:

    sshpass -p donotchange ssh [email protected]

    Which of the following should the tester attempt to do next to take advantage of this information?

    (Select two).

    A. Use Nmap to identify all the SSH systems active on the network.
    B. Take a screen capture of the source code repository for documentation purposes.
    C. Investigate to find whether other files containing embedded passwords are in the code repository.
    D. Confirm whether the server 192.168.6.14 is up by sending ICMP probes.
    E. Run a password-spraying attack with Hydra against all the SSH servers.
    F. Use an external exploit through Metasploit to compromise host 192.168.6.14.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.