Ad slot · leaderboard — below nav, above the quiz
Home/ CompTIA PenTest+/ Practice Test 1

CompTIA PenTest+ Practice Test 1

30 questions · all five PT0-003 domains · untimed · explained
What's in this test · 30 questions · untimed · all 5 domains

Practice Test 1 is a fixed 30-question set drawn from our CompTIA PenTest+ (PT0-003) pool, balanced across all 5 exam domains. Every item is original — written to the public PT0-003 objectives, never copied from a real exam — and each answer is fully explained with cited sources. It is untimed, so you can stop on any question and read the reasoning before moving on.

Domain coverage

Objectives covered: 1.1 Pre-engagement activities (rules of engagement); 1.1 Pre-engagement activities (scope definition; target selection); 1.1 Pre-engagement activities (shared responsibility model); 2.1 Active vs passive reconnaissance; 2.1 Active vs passive reconnaissance (DNS/WHOIS); 2.1 Active vs passive reconnaissance (OSINT); 2.1 Active vs passive reconnaissance (OSINT; protocol scanning); 2.1 Active vs passive reconnaissance (certificate transparency); 2.1 Active vs passive reconnaissance (network sniffing); 3.1 Vulnerability scans (SAST vs DAST); 3.1 Vulnerability scans (SAST vs DAST; web app scanners); 3.1 Vulnerability scans (authenticated vs unauthenticated); 3.1 Vulnerability scans (authenticated vs unauthenticated; credentialed scanning); 3.1 Vulnerability scans (credentialed scanning; troubleshooting scan configs); and more.

Ad slot · in-content — below the quiz, clear of tap targets

About this practice test

Practice Test 1 is a balanced 30-question set across all five PT0-003 domains (Engagement Management, Reconnaissance and Enumeration, Vulnerability Discovery and Analysis, Attacks and Exploits, Post-exploitation and Lateral Movement), weighted the way the real CompTIA PenTest+ exam is. It is untimed, and every answer is explained — you see why the correct option is right, why each distractor is a trap, and the source it was checked against.

Read the explanation on every question, even the ones you get right. When this set feels comfortable, step up to a full timed mock exam, or target a weak area on one of the domain pages below.

What it covers

1 · Engagement Management13% of the exam — drill this domain
2 · Reconnaissance and Enumeration21% of the exam — drill this domain
3 · Vulnerability Discovery and Analysis17% of the exam — drill this domain
4 · Attacks and Exploits35% of the exam — drill this domain
5 · Post-exploitation and Lateral Movement14% of the exam — drill this domain

Keep practicing