CompTIA PenTest+ - PT0-003 Exam Practice Test

A penetration tester approaches a company employee in the smoking area and starts a conversation about the company's recent social event. After a few minutes, the employee holds the badge- protected door open for the penetration tester and both enter the company's building.
Which of the following attacks did the penetration tester perform?

Correct Answer: A Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
After completing vulnerability scans for a given test, a penetration tester needs to prioritize which potential assets are in scope and should be exploited first. Given the following scanner output:

Which of the following findings should the tester prioritize first based upon a consideration of risk to the organization?

Correct Answer: C Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Which of the following implements the "five whys" methodology during the execution phase of a penetration testing engagement?

Correct Answer: B Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
With one day left to complete the testing phase of an engagement, a penetration tester obtains the following results from an Nmap scan:

Which of the following tools should the tester use to quickly identify a potential attack path?

Correct Answer: B Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A penetration tester completes an authenticated vulnerability scan of a host and receives the following results:

Which of the following is most likely to cause stability when a session is created on a target machine?

Correct Answer: C Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A penetration tester has adversely affected a critical system during an engagement, which could have a material impact on the organization. Which of the following should the penetration tester do to address this issue?

Correct Answer: C Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A company wants to perform a BAS (Breach and Attack Simulation) to measure the efficiency of the corporate security controls. Which of the following would most likely help the tester with simple command examples?

Correct Answer: A Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
Which of the following post-exploitation activities allows a penetration tester to maintain persistent access in a compromised system?

Correct Answer: B Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A penetration testing team has gained access to an organization's data center, but the team requires more time to test the attack strategy. Which of the following wireless attack techniques would be the most successful in preventing unintended interruptions?

Correct Answer: A Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
In a cloud environment, a security team discovers that an attacker accessed confidential information that was used to configure virtual machines during their initialization. Through which of the following features could this information have been accessed?

Correct Answer: A Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
During an assessment, a penetration tester compromises some machines but finds that none of the accounts have sufficient access to the target HR database server. In order to enumerate accounts with sufficient permissions, the tester wants to model an attack path before taking further action. Which of the following tools should the tester use to meet this objective?

Correct Answer: E Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
SIMULATION 11
A security analyst is asked to perform various techniques to assess organizational security.
INSTRUCTIONS
Select the command that will successfully accomplish each objective.
Commands may only be used once.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
Correct Answer:

Explanation:
Network reconnaissance: Runs an aggressive scan to identify host details such as open ports, services, versions, and likely OS characteristics.
Folder inheritance: Displays and manages NTFS permissions, including whether permissions are inherited from parent folders.
Searching file system: Recursively searches the filesystem for files matching the specified name.
Confirm connectivity: Sends continuous ICMP echo requests to verify reachability and observe packet loss/latency over time.
Enumerate listeners: Lists active connections and listening ports so you can identify services waiting for inbound connections.
A penetration tester needs to test a very large number of URLs for public access. Given the following code snippet:

Which of the following changes is required?

Correct Answer: C Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A penetration tester runs a network scan but has some issues accurately enumerating the vulnerabilities due to the following error:
OS identification failed
Which of the following is most likely causing this error?

Correct Answer: B Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).
A penetration tester enters an invalid user ID on the login page of a web application. The tester receives a message indicating the user is not found. Then, the tester tries a valid user ID but an incorrect password, but the web application indicates the password is invalid. Which of the following should the tester attempt next?

Correct Answer: A Vote an answer
Explanation: Only visible for Fast2test members. You can sign-up / login (it's free).

Contact Us

If you have any question please leave me your email address, we will reply and send email to you in 12 hours.

Our Working Time: ( GMT 0:00-15:00 ) From Monday to Saturday

Support: Contact now 

日本語 Deutsch 繁体中文 한국어