// FREE TO PREVIEW · PT0-003

🎯 COMPTIA PENTEST+

Prove you can run an offensive engagement end to end — scope, exploit, and report.

CREATE A FREE ACCOUNT & STARTNEW TO LINUX? START FREE
// WHO IT’S FOR

People moving from "I know security" to "I can test it": aspiring pentesters and red-teamers with the fundamentals down.

// EXAM AT A GLANCE

Up to 90 questions · 165 minutes · multiple-choice + performance-based · hands-on tooling · valid 3 years

EXAM DOMAINS

13% Engagement Management
scoping, rules of engagement, methodology, legal & ethics, reporting.
21% Reconnaissance & Enumeration
passive/active recon, scanning, enumeration, scripting.
17% Vulnerability Discovery & Analysis
vulnerability scanning, validating and prioritising findings.
35% Attacks & Exploits
network, host, web, wireless, cloud/API & social engineering.
14% Post-exploitation & Lateral Movement
persistence, pivoting, lateral movement, cleanup.

SAMPLE QUESTIONS

Three tasters — the real track has hundreds, graded, with full rationale.

Q1. Before any active scanning begins, which document defines what you are and are not allowed to touch?
A. The penetration test report
B. The rules of engagement (scope)
C. The CVE database
D. The exploit payload
reveal answer

B. The rules of engagement / scope statement authorises the test and bounds it. Testing outside it is unauthorised access — illegal, regardless of intent.

Q2. Which Nmap option performs service and version detection on open ports?
A. -sn
B. -sV
C. -Pn
D. -oN
reveal answer

B. -sV probes open ports to determine the service and version running. -sn is ping-only host discovery, -Pn skips host discovery, -oN writes normal output.

Q3. You capture NTLM hashes on a network. Reusing them to authenticate without cracking them is:
A. A pass-the-hash attack
B. A brute-force attack
C. A phishing attack
D. A denial-of-service attack
reveal answer

A. Pass-the-hash reuses the captured hash directly for authentication, skipping the need to recover the plaintext password.

// READY?

The full CompTIA PenTest+ track — lectures, graded checks and labs — is free to start. Create an account to save your progress, earn points and climb the leaderboard.

💀
MODULE TITLE
▪ BEGINNER · 4 LESSONS · 0% COMPLETE

SELECT A LESSON TO BEGIN

🗂
LAB TITLE
LAB_01 · BEGINNER · ~20 MIN
🏆
LAB COMPLETE — ALL OBJECTIVES CLEARED

Well executed. Review your commands above or proceed to the next lab.

LAB_01 // ACTIVE
root@lab:~$