CompTIA PT0-002 Exam (page: 13)
CompTIA PenTest+ Certification
Updated on: 01-Sep-2025

Viewing Page 13 of 105

Which of the following tools would be MOST useful in collecting vendor and other security-relevant information for IoT devices to support passive reconnaissance?

  1. Shodan
  2. Nmap
  3. WebScarab-NG
  4. Nessus

Answer(s): A



Which of the following should a penetration tester consider FIRST when engaging in a penetration test in a cloud environment?

  1. Whether the cloud service provider allows the penetration tester to test the environment
  2. Whether the specific cloud services are being used by the application
  3. The geographical location where the cloud services are running
  4. Whether the country where the cloud service is based has any impeding laws

Answer(s): A



HOTSPOT (Drag and Drop is not supported)
You are a security analyst tasked with hardening a web server. You have been given a list of HTTP payloads that were flagged as malicious.
INSTRUCTION
Giving the following attack signatures, determine the attack type, and then identify the associated remediation to prevent the attack in the future.
If at any time you would like to bring back the initial state of the simulation, please click the Reset All button.
Hot Area:

  1. See Explanation section for answer.

Answer(s): A

Explanation:



A penetration tester runs the unshadow command on a machine.
Which of the following tools will the tester most likely use NEXT?

  1. John the Ripper
  2. Hydra
  3. Mimikatz
  4. Cain and Abel

Answer(s): A



A penetration tester obtained the following results after scanning a web server using the dirb utility:
Which of the following elements is MOST likely to contain useful information for the penetration tester?

  1. index.html
  2. about
  3. info
  4. home.html

Answer(s): B



Viewing Page 13 of 105



Share your comments for CompTIA PT0-002 exam with other users:

SAJI 7/20/2023 2:51:00 AM

56 question correct answer a,b
Anonymous


Summer 10/4/2023 9:57:00 PM

looking forward to the real exam
Anonymous