CompTIA PT0-002 Exam (page: 21)
CompTIA PenTest+ Certification
Updated on: 01-Sep-2025

Viewing Page 21 of 105

A penetration tester receives the following results from an Nmap scan:
Which of the following OSs is the target MOST likely running?

  1. CentOS
  2. Arch Linux
  3. Windows Server
  4. Ubuntu

Answer(s): C



A penetration tester would like to obtain FTP credentials by deploying a workstation as an on-path attack between the target and the server that has the FTP protocol. Which of the following methods would be the BEST to accomplish this objective?

  1. Wait for the next login and perform a downgrade attack on the server.
  2. Capture traffic using Wireshark.
  3. Perform a brute-force attack over the server.
  4. Use an FTP exploit against the server.

Answer(s): B



Appending string values onto another string is called:

  1. compilation
  2. connection
  3. concatenation
  4. conjunction

Answer(s): C



A consultant is reviewing the following output after reports of intermittent connectivity issues:
Which of the following is MOST likely to be reported by the consultant?

  1. A device on the network has an IP address in the wrong subnet.
  2. A multicast session was initiated using the wrong multicast group.
  3. An ARP flooding attack is using the broadcast address to perform DDoS.
  4. A device on the network has poisoned the ARP cache.

Answer(s): D



Which of the following web-application security risks are part of the OWASP Top 10 v2017? (Choose two.)

  1. Buffer overflows
  2. Cross-site scripting
  3. Race-condition attacks
  4. Zero-day attacks
  5. Injection flaws
  6. Ransomware attacks

Answer(s): B,E



Viewing Page 21 of 105



Share your comments for CompTIA PT0-002 exam with other users:

SAJI 7/20/2023 2:51:00 AM

56 question correct answer a,b
Anonymous


Summer 10/4/2023 9:57:00 PM

looking forward to the real exam
Anonymous