CompTIA PT0-002 Exam (page: 18)
CompTIA PenTest+ Certification
Updated on: 01-Sep-2025

Viewing Page 18 of 105

A security professional wants to test an IoT device by sending an invalid packet to a proprietary service listening on TCP port 3011. Which of the following would allow the security professional to easily and programmatically manipulate the TCP header length and checksum using arbitrary numbers and to observe how the proprietary service responds?

  1. Nmap
  2. tcpdump
  3. Scapy
  4. hping3

Answer(s): C



Which of the following should a penetration tester do NEXT after identifying that an application being tested has already been compromised with malware?

  1. Analyze the malware to see what it does.
  2. Collect the proper evidence and then remove the malware.
  3. Do a root-cause analysis to find out how the malware got in.
  4. Remove the malware immediately.
  5. Stop the assessment and inform the emergency contact.

Answer(s): E



A penetration tester who is conducting a vulnerability assessment discovers that ICMP is disabled on a network segment. Which of the following could be used for a denial-of-service attack on the network segment?

  1. Smurf
  2. Ping flood
  3. Fraggle
  4. Ping of death

Answer(s): C



A penetration tester writes the following script:
Which of the following is the tester performing?

  1. Searching for service vulnerabilities
  2. Trying to recover a lost bind shell
  3. Building a reverse shell listening on specified ports
  4. Scanning a network for specific open ports

Answer(s): D



An Nmap network scan has found five open ports with identified services. Which of the following tools should a penetration tester use NEXT to determine if any vulnerabilities with associated exploits exist on the open ports?

  1. OpenVAS
  2. Drozer
  3. Burp Suite
  4. OWASP ZAP

Answer(s): A



Viewing Page 18 of 105



Share your comments for CompTIA PT0-002 exam with other users:

SAJI 7/20/2023 2:51:00 AM

56 question correct answer a,b
Anonymous


Summer 10/4/2023 9:57:00 PM

looking forward to the real exam
Anonymous