CertSafari

    Free Practice Questions for CompTIA PenTest+ Certification

    Guide checked for updates:
    7 Oct 2026
    Question bank created:
    5 Sep 2026
    Question bank last updated:
    6 Sep 2026

    Study with 353 exam-style practice questions designed to help you prepare for the CompTIA PenTest+.

    Your progress

    Coverage
    Mastery
    Performance

    Start Practicing

    Start a quiz

    Practice with randomly mixed questions from all topics

    Question MixAll Topics
    FormatRandom Order

    Exam experiences

    Pass and fail outcomes from candidates who prepared here — advice, scores, and prep time.

    Your saved questions

    Open the list of questions you bookmarked during practice for this exam.

    Study notes

    Private notes per question, grouped by exam domain — opens on its own page, not inline on this overview.

    Quiz History

    Exam Details

    Key information about CompTIA PenTest+

    Official study guide

    View

    Question formats CertSafari offers
    • Multiple choice
    • Ordering
    • Matching
    • Fill in the blank
    duration:

    165 minutes

    languages:

    English, French, Japanese, and Portuguese

    retirement:

    Usually three years after launch (estimated 2027)

    launch date:

    December 17, 2024

    exam version:

    V3

    passing score:

    750 (on a scale of 100-900)

    exam series code:

    PT0-003

    number of questions:

    Maximum of 90 (multiple-choice and performance-based)

    recommended experience:

    3-4 years in a penetration tester job role, with CompTIA Network+ and Security+ or equivalent knowledge

    Exam Topics & Skills Assessed

    Skills measured (from the official study guide)

    1: Engagement Management

    1.1: Summarize pre-engagement activities.

    1.2: Explain collaboration and communication activities.

    1.3: Compare and contrast testing frameworks and methodologies.

    1.4: Explain the components of a penetration test report.

    1.5: Given a scenario, analyze the findings and recommend the appropriate remediation within a report.

    2: Reconnaissance and Enumeration

    2.1: Given a scenario, apply information gathering techniques.

    2.2: Given a scenario, apply enumeration techniques.

    2.3: Given a scenario, modify scripts for reconnaissance and enumeration.

    2.4: Given a scenario, use the appropriate tools for reconnaissance and enumeration.

    3: Vulnerability Discovery and Analysis

    3.1: Given a scenario, conduct vulnerability discovery using various techniques.

    3.2: Given a scenario, analyze output from reconnaissance, scanning, and enumeration phases.

    3.3: Explain physical security concepts.

    4: Attacks and Exploits

    4.1: Given a scenario, analyze output to prioritize and prepare attacks.

    4.2: Given a scenario, perform network attacks using the appropriate tools.

    4.3: Given a scenario, perform authentication attacks using the appropriate tools.

    4.4: Given a scenario, perform host-based attacks using the appropriate tools.

    4.5: Given a scenario, perform web application attacks using the appropriate tools.

    4.6: Given a scenario, perform cloud-based attacks using the appropriate tools.

    4.7: Given a scenario, perform wireless attacks using the appropriate tools.

    4.8: Given a scenario, perform social engineering attacks using the appropriate tools.

    4.9: Explain common attacks against specialized systems.

    4.10: Given a scenario, use scripting to automate attacks.

    5: Post-exploitation and Lateral Movement

    5.1: Given a scenario, perform tasks to establish and maintain persistence.

    5.2: Given a scenario, perform tasks to move laterally throughout the environment.

    5.3: Summarize concepts related to staging and exfiltration.

    5.4: Explain cleanup and restoration activities.

    Techniques & products

    rules of engagement
    testing windows
    target selection
    authorization letters
    mandatory reporting
    regulations
    peer reviews
    escalation paths
    risk articulation
    executive summaries
    findings
    remediation recommendations
    open-source intelligence (OSINT)
    network sniffing
    protocol scanning
    DNS enumeration
    service discovery
    directory enumeration
    Nmap
    Wireshark
    Shodan
    Python scripts
    PowerShell scripts
    Bash scripts
    authenticated scans
    unauthenticated scans
    static application security testing (SAST)
    dynamic application security testing (DAST)
    validating findings
    troubleshooting configurations
    false positives
    Nessus
    Nikto
    OpenVAS
    VLAN hopping
    on-path attacks
    service exploitation
    brute-force attacks
    pass-the-hash
    credential stuffing
    privilege escalation
    process injection
    credential dumping
    SQL injection
    cross-site scripting (XSS)
    directory traversal
    container escapes
    metadata service attacks
    identity and access management (IAM) misconfiguration
    prompt injection
    model manipulation
    establishing persistence
    lateral movement
    cleaning up artifacts
    attack narratives

    CertSafari is not affiliated with, endorsed by, or officially connected to CompTIA, Inc.. Full disclaimer