CompTIA PenTest+ (PT0-003) Exam Blueprint

PT0-003

85Questions
165 minDuration
750/100-900Passing Score
$404Price
3 yearsValid For
4Languages
Practice CompTIA PenTest+ on QuizForge

Exam Domains

1.0 Engagement management 13%
  • 1.1Planning and scoping
    defining rules of engagement, testing windows, and target selection.
  • 1.2Legal and ethical compliance
    ensuring authorization letters, mandatory reporting, and adherence to regulations.
  • 1.3Collaboration and communication
    aligning with stakeholders through peer reviews, escalation paths, and risk articulation.
  • 1.4Penetration test reports
    creating reports with executive summaries, findings, and remediation recommendations.
2.0 Reconnaissance and enumeration 21%
  • 2.1Active and passive reconnaissance
    gathering information using open-source intelligence (OSINT), network sniffing, and protocol scanning.
  • 2.2Enumeration techniques
    performing DNS enumeration, service discovery, and directory enumeration.
  • 2.3Reconnaissance tools
    using tools like Nmap, Wireshark, and Shodan for information gathering.
  • 2.4Script modification
    customizing Python, PowerShell, and Bash scripts for reconnaissance and enumeration.
3.0 Vulnerability discovery and analysis 17%
  • 3.1Vulnerability scans
    conducting authenticated, unauthenticated, static application security testing (SAST) and dynamic application security testing (DAST).
  • 3.2Result analysis
    validating findings, troubleshooting configurations, and identifying false positives.
  • 3.3Discovery tools
    using tools like Nessus, Nikto, and OpenVAS for vulnerability discovery.
4.0 Attacks and exploits 35%
  • 4.1Network attacks
    performing VLAN hopping, on-path attacks, and service exploitation.
  • 4.2Authentication attacks
    executing brute-force attacks, pass-the-hash, and credential stuffing.
  • 4.3Host-based attacks
    conducting privilege escalation, process injection, and credential dumping.
  • 4.4Web application attacks
    performing SQL injection, cross-site scripting (XSS), and directory traversal.
  • 4.5Cloud-based attacks
    exploiting container escapes, metadata service attacks, and identity and access management (IAM) misconfiguration.
  • 4.6AI attacks
    explaining prompt injection and model manipulation against artificial intelligence systems.
5.0 Post-exploitation and lateral movement 14%
  • 5.1Post-exploitation activities
    establishing persistence, performing lateral movement, and cleaning up artifacts.
  • 5.2Documentation
    creating attack narratives and providing remediation recommendations.

Exam Details

Question TypesMultiple Choice (single), Multiple Choice (multiple), Performance-Based
FormatLinear
Online ProctoringAvailable
ID RequirementsTwo forms of ID are required. Primary ID must be government-issued, include candidate's name, photo, and signature (e.g. passport, driver's license). Secondary ID must include candidate's name and signature or name and photo.
RenewalRequired -- Earn CE credits through CompTIA CE program (training, conferences, publishing, teaching, higher certs) or retake the current exam version before expiry.
PrerequisitesNetwork+ and Security+ or equivalent knowledge (recommended)
Retake PolicyNo waiting period required before first retake. After the second failed attempt, candidates must wait 14 calendar days before any subsequent attempt. No limit on total attempts.
LanguagesEnglish, Japanese, Portuguese, Simplified Chinese

Official Study Resources

online courseCertMaster Learn ($499)
practice examCertMaster Practice ($99)
labCertMaster Labs ($199)