Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

PT0-003 CompTIA PenTest+ Exam is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

PT0-003 Practice Questions

CompTIA PenTest+ Exam

Last Update 3 days ago
Total Questions : 330

Dive into our fully updated and stable PT0-003 practice test platform, featuring all the latest PenTest+ exam questions added this week. Our preparation tool is more than just a CompTIA study aid; it's a strategic advantage.

Our free PenTest+ practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about PT0-003. Use this test to pinpoint which areas you need to focus your study on.

PT0-003 PDF

PT0-003 PDF (Printable)
$54.25
$154.99

PT0-003 Testing Engine

PT0-003 PDF (Printable)
$59.5
$169.99

PT0-003 PDF + Testing Engine

PT0-003 PDF (Printable)
$74.55
$212.99
Question # 11

A penetration tester identifies an exposed corporate directory containing first and last names and phone numbers for employees. Which of the following attack techniques would be the most effective to pursue if the penetration tester wants to compromise user accounts?

Options:

A.  

Smishing

B.  

Impersonation

C.  

Tailgating

D.  

Whaling

Discussion 0
Question # 12

A penetration tester completes a scan and sees the following output on a host:

bash

Copy code

Nmap scan report for victim (10.10.10.10)

Host is up (0.0001s latency)

PORT STATE SERVICE

161/udp open|filtered snmp

445/tcp open microsoft-ds

3389/tcp open microsoft-ds

Running Microsoft Windows 7

OS CPE: cpe:/o:microsoft:windows_7_sp0

The tester wants to obtain shell access. Which of the following related exploits should the tester try first?

Options:

A.  

exploit/windows/smb/psexec

B.  

exploit/windows/smb/ms08_067_netapi

C.  

exploit/windows/smb/ms17_010_eternalblue

D.  

auxiliary/scanner/snmp/snmp_login

Discussion 0
Question # 13

A penetration tester gains shell access to a Windows host. The tester needs to permanently turn off protections in order to install additional payload. Which of the following commands is most appropriate?

Options:

A.  

sc config < svc_name > start=disabled

B.  

sc query state= all

C.  

pskill < pid_svc_name >

D.  

net config < svc_name >

Discussion 0
Question # 14

A penetration tester needs to evaluate the order in which the next systems will be selected for testing. Given the following output:

Hostname | IP address | CVSS 2.0 | EPSS

hrdatabase | 192.168.20.55 | 9.9 | 0.50

financesite | 192.168.15.99 | 8.0 | 0.01

legaldatabase | 192.168.10.2 | 8.2 | 0.60

fileserver | 192.168.125.7 | 7.6 | 0.90

Which of the following targets should the tester select next?

Options:

A.  

fileserver

B.  

hrdatabase

C.  

legaldatabase

D.  

financesite

Discussion 0
Question # 15

A penetration tester is attempting to discover vulnerabilities in a company ' s web application. Which of the following tools would most likely assist with testing the security of the web application?

Options:

A.  

OpenVAS

B.  

Nessus

C.  

sqlmap

D.  

Nikto

Discussion 0
Question # 16

A company hires a penetration tester to test the security implementation of its wireless networks. The main goal for this assessment is to intercept and get access to sensitive data from the company ' s employees. Which of the following tools should the security professional use to best accomplish this task?

Options:

A.  

Metasploit

B.  

WiFi-Pumpkin

C.  

SET

D.  

theHarvester

E.  

WiGL

E.  

net

Discussion 0
Question # 17

A penetration tester finished a security scan and uncovered numerous vulnerabilities on several hosts. Based on the targets ' EPSS and CVSS scores, which of the following targets is the most likely to get attacked?

Options:

A.  

Target 1: EPSS Score = 0.6 and CVSS Score = 4

B.  

Target 2: EPSS Score = 0.3 and CVSS Score = 2

C.  

Target 3: EPSS Score = 0.6 and CVSS Score = 1

D.  

Target 4: EPSS Score = 0.4 and CVSS Score = 4.5

Discussion 0
Question # 18

A penetration tester executes multiple enumeration commands to find a path to escalate privileges. Given the following command:

find / -user root -perm -4000 -exec ls -ldb {} \; 2 > /dev/null

Which of the following is the penetration tester attempting to enumerate?

Options:

A.  

Attack path mapping

B.  

API keys

C.  

Passwords

D.  

Permission

Discussion 0
Question # 19

A penetration tester currently conducts phishing reconnaissance using various tools and accounts for multiple intelligence-gathering platforms. The tester wants to consolidate some of the tools and accounts into one solution to analyze the output from the intelligence-gathering tools. Which of the following is the best tool for the penetration tester to use?

Options:

A.  

Caldera

B.  

SpiderFoot

C.  

Maltego

D.  

WIGL

E.  

net

Discussion 0
Question # 20

A penetration tester performs an assessment on the target company ' s Kubernetes cluster using kube-hunter. Which of the following types of vulnerabilities could be detected with the tool?

Options:

A.  

Network configuration errors in Kubernetes services

B.  

Weaknesses and misconfigurations in the Kubernetes cluster

C.  

Application deployment issues in Kubernetes

D.  

Security vulnerabilities specific to Docker containers

Discussion 0
Get PT0-003 dumps and pass your exam in 24 hours!

Free Exams Sample Questions