Vendor: CompTIA
Certifications: CompTIA Certifications
Exam Name: CompTIA PenTest+
Exam Code: PT0-001
Total Questions: 306 Q&As ( View Details)
Exam retired
VCE
CompTIA PT0-001 Last Month Results
PT0-001 Q&A's Detail
Exam Code: | PT0-001 |
Total Questions: | 306 |
Single & Multiple Choice | 299 |
Drag Drop | 5 |
Hotspot | 1 |
Simulation Labs | 1 |
CertBus Has the Latest PT0-001 Exam Dumps in Both PDF and VCE Format
PT0-001 Online Practice Questions and Answers
A penetration tester ran the following Nmap scan on a computer:
nmap -aV 192.168.1.5
The organization said it had disabled Telnet from its environment. However, the results of the Nmap scan show port 22 as closed and port 23 as open to SSH. Which of the following is the BEST explanation for what happened?
A. The organization failed to disable Telnet.
B. Nmap results contain a false positive for port 23.
C. Port 22 was filtered.
D. The service is running on a non-standard port.
Joe, a penetration tester, is asked to assess a company's physical security by gaining access to its corporate office. Joe ism looking for a method that will enable him to enter the building during business hours or when there are no employee on-site. Which of the following would be MOST effective in accomplishing this?
A. Badge cloning
B. Lock picking
C. Tailgating
D. Piggybacking
A company received a report with the following finding While on the internal network the penetration tester was able to successfully capture SMB broadcasted user ID and password information on the network and decode this information This allowed the penetration tester to then join their own computer to the ABC domain
Which of the following remediation's are appropriate for the reported findings'? (Select TWO)
A. Set the Schedule Task Service from Automatic to Disabled
B. Enable network-level authentication
C. Remove the ability from Domain Users to join domain computers to the network
D. Set the netlogon service from Automatic to Disabled
E. Set up a SIEM alert to monitor Domain joined machines
F. Set "Digitally sign network communications" to Always
A consultant is attempting to harvest credentials from unsecure network protocols in use by the organization. Which of the following commands should the consultant use?
A. Tcmpump
B. John
C. Hashcat
D. nc
Which of the following vulnerabilities are MOST likely to be false positives when reported by an automated scanner on a static HTML web page? (Choose two.)
A. Missing secure flag for a sensitive cookie
B. Reflected cross-site scripting
C. Enabled directory listing
D. Insecure HTTP methods allowed
E. Unencrypted transfer of sensitive data
F. Command injection
G. Disclosure of internal system information
H. Support of weak cipher suites
Add Comments
This dump is valid, but there are some new questions in my exam. passed today.
CompTIA PT0-001 exam official information: The PenTest+ certification validates skills in penetration testing and vulnerability management. Learn about the certification, available training and the exam.