Written by students who passed Immediately available after payment Read online or as PDF Wrong document? Swap it for free 4.6 TrustPilot
logo-home
Exam (elaborations)

COMPTIA PENTEST+ – PRACTICE QUESTIONS AND CORRECT ANSWERS (VERIFIED ANSWERS) PLUS RATIONALES 2026 Q&A | INSTANT DOWNLOAD PDF.

Rating
-
Sold
-
Pages
117
Grade
A+
Uploaded on
10-05-2026
Written in
2025/2026

COMPTIA PENTEST+ – PRACTICE QUESTIONS AND CORRECT ANSWERS (VERIFIED ANSWERS) PLUS RATIONALES 2026 Q&A | INSTANT DOWNLOAD PDF.

Institution
COMPTIA PENTEST+
Course
COMPTIA PENTEST+

Content preview

COMPTIA PENTEST+ – PRACTICE QUESTIONS AND CORRECT ANSWERS
(VERIFIED ANSWERS) PLUS RATIONALES 2026 Q&A | INSTANT DOWNLOAD
PDF.

Core Domains

Planning and Scoping

Information Gathering and Vulnerability Scanning

Attacks and Exploits

Reporting and Communication

Tools and Code Analysis

Legal and Compliance Frameworks

Exploitation of Web Applications and Mobile Devices

Post-Exploitation Techniques

Introduction

This comprehensive practice assessment is designed to evaluate a candidate’s
proficiency in the various domains of penetration testing. The purpose of this exam is

,to ensure that the individual possesses the technical knowledge and analytical skills
required to plan, scope, and manage a vulnerability assessment and penetration test.
The questions follow a rigorous multiple-choice and scenario-based structure,
mirroring the complexity found in professional environments. There is a significant
emphasis on real-world application, ethical decision-making, and the ability to
interpret technical data to provide actionable business recommendations. Success on
this assessment indicates readiness for professional-grade security assessments and
official certification.

SECTION ONE: QUESTIONS 1–100

1. A penetration tester has been hired to perform a black-box assessment. Which
of the following is the most important document to sign before any technical
work begins?

A. Master Service Agreement (MSA)
B. Non-Disclosure Agreement (NDA)
C. Rules of Engagement (RoE)
D. Statement of Work (SoW)

🟢 C. Rules of Engagement (RoE)

,🔴 RATIONALE: The Rules of Engagement (RoE) document establishes the
technical boundaries, timelines, and authorized activities for the assessment,
protecting both the tester and the client.

2. Which of the following Nmap flags is used to perform a TCP SYN scan?

A. -sT
B. -sU
C. -sS
D. -sA

🟢 C. -sS
🔴 RATIONALE: The -sS flag initiates a SYN scan, often referred to as a "half-open"
scan because it does not complete the three-way handshake.

3. During an internal assessment, a tester discovers a Windows machine with an
open port 445. Which protocol is most likely associated with this port?

A. SSH
B. SMB
C. RDP
D. SNMP

, 🟢 B. SMB
🔴 RATIONALE: Port 445 is the standard port for Server Message Block (SMB) over
TCP, commonly used for file and printer sharing in Windows environments.

4. A tester wants to intercept traffic between a client and a gateway using ARP
poisoning. Which tool is best suited for this task?

A. Wireshark
B. BetterCAP
C. Nikto
D. Hydra

🟢 B. BetterCAP
🔴 RATIONALE: BetterCAP is a comprehensive tool specifically designed for man-in-
the-middle (MITM) attacks, including ARP spoofing and DNS poisoning.

5. While reviewing a web application, a tester notices that user input is reflected
back in the page without sanitization. Which vulnerability is most likely present?

A. SQL Injection
B. Cross-Site Scripting (XSS)

Written for

Institution
COMPTIA PENTEST+
Course
COMPTIA PENTEST+

Document information

Uploaded on
May 10, 2026
Number of pages
117
Written in
2025/2026
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

$25.99
Get access to the full document:

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Get to know the seller
Seller avatar
certificationpag
1.0
(1)

Get to know the seller

Seller avatar
certificationpag For state PCS, UPSC, UGC NET
Follow You need to be logged in order to follow users or courses
Sold
1
Member since
2 weeks
Number of followers
0
Documents
230
Last sold
3 days ago

1.0

1 reviews

5
0
4
0
3
0
2
0
1
1

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions