Pre-Summer Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: 65pass65

PT0-003 CompTIA PenTest+ Exam is now Stable and With Pass Result | Test Your Knowledge for Free

Exams4sure Dumps

PT0-003 Practice Questions

CompTIA PenTest+ Exam

Last Update 3 days ago
Total Questions : 330

Dive into our fully updated and stable PT0-003 practice test platform, featuring all the latest PenTest+ exam questions added this week. Our preparation tool is more than just a CompTIA study aid; it's a strategic advantage.

Our free PenTest+ practice questions crafted to reflect the domains and difficulty of the actual exam. The detailed rationales explain the 'why' behind each answer, reinforcing key concepts about PT0-003. Use this test to pinpoint which areas you need to focus your study on.

PT0-003 PDF

PT0-003 PDF (Printable)
$54.25
$154.99

PT0-003 Testing Engine

PT0-003 PDF (Printable)
$59.5
$169.99

PT0-003 PDF + Testing Engine

PT0-003 PDF (Printable)
$74.55
$212.99
Question # 1

Severity: HIGH

Vulnerability: ABC Load Balancer: Alpha OS httpd TLS vulnerability

An Nmap scan of the affected device produces the following results:

Host is up (0.0000040s latency).

Not shown: 98 closed tcp ports (reset)

PORT STATE SERVICE

22/tcp open ssh

80/tcp open http

443/tcp closed https

Which of the following best describes this scenario?

Options:

A.  

True negative

B.  

True positive

C.  

False negative

D.  

False positive

Discussion 0
Question # 2

Which of the following tasks would ensure the key outputs from a penetration test are not lost as part of the cleanup and restoration activities?

Options:

A.  

Preserving artifacts

B.  

Reverting configuration changes

C.  

Keeping chain of custody

D.  

Exporting credential data

Discussion 0
Question # 3

A penetration tester needs to scan a remote infrastructure with Nmap. The tester issues the following command:

nmap 10.10.1.0/24

Which of the following is the number of TCP ports that will be scanned?

Options:

A.  

256

B.  

1,000

C.  

1,024

D.  

65,535

Discussion 0
Question # 4

Before starting an assessment, a penetration tester needs to scan a Class B IPv4 network for open ports in a short amount of time. Which of the following is the best tool for this task?

Options:

A.  

Burp Suite

B.  

masscan

C.  

Nmap

D.  

hping

Discussion 0
Question # 5

A penetration testing team needs to determine whether it is possible to disrupt the wireless communications for PCs deployed in the client ' s offices. Which of the following techniques should the penetration tester leverage?

Options:

A.  

Port mirroring

B.  

Sidecar scanning

C.  

ARP poisoning

D.  

Channel scanning

Discussion 0
Question # 6

During a penetration test, the tester identifies several unused services that are listening on all targeted internal laptops. Which of the following technical controls should the tester recommend to reduce the risk of compromise?

Question # 6

Options:

A.  

Multifactor authentication

B.  

Patch management

C.  

System hardening

D.  

Network segmentation

Discussion 0
Question # 7

A company that uses an insecure corporate wireless network is concerned about security. Which of the following is the most likely tool a penetration tester could use to obtain initial access?

Options:

A.  

Responder

B.  

Metasploit

C.  

Netcat

D.  

Nmap

Discussion 0
Question # 8

During an assessment, a penetration tester runs the following command from a Linux machine:

GetUsersSPNs.py -dc-ip 172.16.1.1 DOMAIN.LOCAL/aholliday -request

Which of the following is the penetration tester trying to do?

Options:

A.  

Crack the user password for aholliday

B.  

Download all TGS tickets for offline processing

C.  

Perform a pass-the-hash attack using the hash for aholliday

D.  

Perform password spraying

Discussion 0
Question # 9

During an internal penetration test, a tester compromises a Windows OS-based endpoint and bypasses the defensive mechanisms. The tester also discovers that the endpoint is part of an Active Directory (AD) local domain.

The tester’s main goal is to leverage credentials to authenticate into other systems within the Active Directory environment.

Which of the following steps should the tester take to complete the goal?

Options:

A.  

Use Mimikatz to collect information about the accounts and try to authenticate in other systems

B.  

Use Hashcat to crack a password for the local user on the compromised endpoint

C.  

Use Evil-WinRM to access other systems in the network within the endpoint credentials

D.  

Use Metasploit to create and execute a payload and try to upload the payload into other systems

Discussion 0
Question # 10

A penetration tester writes a Bash script to automate the execution of a ping command on a Class C network:

bash

for var in —MISSING TEXT—

do

ping -c 1 192.168.10.$var

done

Which of the following pieces of code should the penetration tester use in place of the —MISSING TEXT— placeholder?

Options:

A.  

crunch 1 254 loop

B.  

seq 1 254

C.  

echo 1-254

D.  

{1.-254}

Discussion 0
Get PT0-003 dumps and pass your exam in 24 hours!

Free Exams Sample Questions