
CompTIAPenTest+
Domain 4Objective 2
Authentication Attacks PT0-003 Practice Questions (Page 1)
Part of the Attacks and exploits domain, which accounts for 35% of the PT0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~23–39 in this domain), expect 4–7 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
9concepts
35%of the exam
Questions 1–5
- 1
Which characteristic is most typical of a brute-force attack compared to other password guessing methods?
Select an answer first - 2
A company's VPN gateway is being targeted by brute-force attacks. The security team wants to implement a control that will block attackers after a set number of failed attempts but also allow legitimate users who mistype their password to retry without being permanently locked out. Which control best meets this requirement?
Select an answer first - 3
A security administrator is hardening a Windows environment against pass-the-hash attacks. The organization uses NTLM for legacy applications and cannot disable it. The administrator wants to implement a control that will make it harder for attackers to extract hashes from memory while maintaining compatibility with legacy applications. Which control is most effective?
Select an answer first - 4
Why are credential stuffing attacks often successful?
Select an answer first - 5
Which security measure is most effective at preventing pass-the-hash attacks?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “PT0-003” is a trademark of its owner, used for identification only.