Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
CompTIA logo

CompTIAPenTest+

Domain 3Objective 1

Vulnerability Scans PT0-003 Practice Questions (Page 1)

Part of the Vulnerability discovery and analysis domain, which accounts for 17% of the PT0-003 exam. CompTIA does not publish an official question count, but from its 165-minute exam (~65–110 total, ~11–19 in this domain), expect 4–6 from this objective — we provide 11 practice questions to prepare you well beyond it. (estimate)

11questions here
3free pages
4concepts
17%of the exam

Questions 1–5

  1. 1foundation · easy

    What is the primary purpose of performing an authenticated vulnerability scan?

    Select an answer first
  2. 2foundation · easy

    Which security testing technique analyzes source code for vulnerabilities without executing the program?

    Select an answer first
  3. 3foundation · easy

    Which testing technique identifies vulnerabilities in a running application by simulating attacks against it?

    Select an answer first
  4. 4expert · hard

    A development team is using a mix of SAST and DAST in their CI/CD pipeline. They notice that SAST is producing many false positives, and DAST is missing some vulnerabilities that are only visible in the source code. The team wants to reduce false positives while improving coverage. Which approach should they take?

    Select an answer first
  5. 5foundation · easy

    A penetration tester is planning a vulnerability scan of a web application that requires a login to access most of its functionality. Which type of scan would provide the most complete coverage of the application's attack surface?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CompTIA. “PT0-003” is a trademark of its owner, used for identification only.