CompTIA PenTest+ Certification Exam

Here you have the best CompTIA PT0-002 practice exam questions

  • Preview the first 5 of 530 questions for free
  • These questions were last updated on May 5, 2026
  • This site is not affiliated with or endorsed by CompTIA.
Question 1 of 530

Which of the following commands will allow a penetration tester to permit a shell script to be executed by the file owner?

Answer

Suggested Answer

The suggested answer is A.

The command 'chmod u+x script.sh' is used to modify the permissions of the file 'script.sh' to allow the owner (user) of the file to execute it. 'chmod' changes the file mode bits, 'u' refers to the user (file owner), and '+x' adds execute permissions. Therefore, this command specifically allows the owner of the script to execute it.

Community Votes10 votes
ASuggested
100%
Question 2 of 530

A penetration tester gains access to a system and establishes persistence, and then run the following commands:

Exam PT0-002: Question 2 - Image 1

Which of the following actions is the tester MOST likely performing?

Answer

Suggested Answer

The suggested answer is C.

The commands executed by the penetration tester are intended to clear the Bash history file while preserving its timestamp. The sequence starts by creating an empty file named 'temp'. The 'touch -r .bash_history temp' command then ensures that the 'temp' file has the same timestamp as the original '.bash_history' file. Finally, the 'mv temp .bash_history' command replaces the existing '.bash_history' file with the empty 'temp' file, effectively clearing the Bash history while keeping its original modification time unchanged. This action is most likely performed to cover tracks and make it harder for incident responders to detect the tester's activities on the system.

Community Votes14 votes
CSuggested
86%
B
14%
Question 3 of 530

A compliance-based penetration test is primarily concerned with:

Answer

Suggested Answer

The suggested answer is C.

A compliance-based penetration test is primarily concerned with determining the efficacy of a specific set of security standards. The purpose of this test is to ensure that the organization adheres to certain security standards and regulatory requirements, such as HIPAA, PCI-DSS, and SOX. This involves assessing whether the security controls and processes in place meet the necessary criteria to protect sensitive data and maintain compliance with the relevant regulations.

Community Votes10 votes
CSuggested
90%
A
10%
Question 4 of 530

A penetration tester is explaining the MITRE ATT&CK framework to a company's chief legal counsel.

Which of the following would the tester MOST likely describe as a benefit of the framework?

Answer

Suggested Answer

The suggested answer is A.

The MITRE ATT&CK framework is particularly beneficial for understanding the tactics used in security intrusions. By analyzing and comprehending these tactics, an organization can better disrupt potential intrusions and enhance its defense mechanisms. This framework provides a detailed knowledge base of adversary tactics and techniques, allowing organizations to prioritize security efforts, assess the effectiveness of security controls, and measure readiness to defend against attacks. Therefore, the primary benefit a penetration tester would highlight is the enhanced understanding of security intrusion tactics to effectively disrupt them.

Community Votes15 votes
ASuggested
100%
Question 5 of 530

Which of the following BEST describe the OWASP Top 10? (Choose two.)

Answer

Suggested Answer

The suggested answer is A, C.

The OWASP Top 10 is a well-recognized resource that identifies the most critical security risks to web applications. It prioritizes these risks based on their prevalence and potential impact. This list is updated periodically to reflect the evolving landscape of web application security. Therefore, the best descriptions are that it is a list of the most critical risks of web applications and that these risks are defined in order of importance.

Community Votes8 votes
ACSuggested
100%

525 more questions await

Unlock the full CompTIA PT0-002 question bank

5 of 530 completed1%

Choose your plan

One-time payment · No subscription · No hidden fees

Standard

Quick preparation

$25

30 days access

30 day access to all questions
Instant free updates
Highest passing rate in industry
Printable PDF download
No money-back guarantee
Best Value

Premium

Guaranteed success

$60$35

90 days access

PDF

Printable PDF download

New

Save every question as a PDF for offline study or printing.

90 day access to all questions
Instant free updates
Highest passing rate in industry
Pass guaranteed or money back

100% Money-Back Guarantee

Don't pass? Full refund.

4.9/5

Based on 4,568+ reviews

Trusted by thousands of professionals

Join certified professionals who passed their exams with Examice

Examice helped me pass my AWS certification on the first try! The questions were incredibly similar to the real exam. Comments helped me understand answers I was struggling with.
S
Sarah C.
Cloud Engineer
Great results in a short prep time. Passed on my first attempt.
D
David K.
Network Engineer
I needed to pass an exam for work, and this website delivered. The quality for the price is outstanding, and the support is really good. I passed without issues.
M
Michael R.
Security Analyst
Skeptical at first, but impressed. Every question included clear, detailed explanations.
L
Lisa M.
Solutions Architect
The guarantee gave me confidence to invest in the premium package. Turns out I didn't need it. Passed comfortably. The explanations for each answer were incredibly detailed and helped me grasp security concepts that I'd been struggling with for months.
R
Robert H.
Cybersecurity Consultant
Used Examice for my PMP certification. The questions were well structured and covered all exam domains thoroughly.
J
James T.
IT Manager
After failing my first attempt with other study materials, I switched to Examice and passed confidently on my second attempt.
A
Anna W.
Data Engineer
The premium package was worth it. 90 days of access gave me the flexibility to study when it worked for me, without feeling rushed.
E
Emily J.
DevOps Engineer
Straightforward questions that matched the real exam perfectly. Studied for two weeks and passed with a great score.
K
Karen P.
Systems Administrator

Frequently Asked Questions

Everything you need to know. Contact us for more.

Our CompTIA PT0-002 questions are based on real exam experiences and are continuously updated to match the current exam format. We maintain a +99% pass rate because our questions closely mirror what you'll see on the actual exam.

With our Premium package, you get a 100% money-back guarantee. If you don't pass your exam after studying with our materials, simply contact us with your exam results and we'll refund your purchase. Terms and conditions apply, read our full refund policy to learn more.

Our question bank is updated regularly based on feedback from recent exam takers. We typically review and update our content every week with reports about new questions or changes to the exam format.

Standard package access cannot be extended. However, Premium package gives you 90 days which is typically more than enough time to prepare thoroughly. If you need additional time, you can purchase a new package at any time.

This is a one-time payment with no recurring charges. Once you purchase, you get full access to all exam questions for the duration of your package (30 days for Standard, 90 days for Premium). No hidden fees or automatic renewals.

Pass on your first try

All 530questions · Detailed explanations · Printable PDF · 90 days access

Money-back guaranteeSecure checkout
$35

one-time payment