PT0-002Free Study Guide

CompTIA PenTest+ PT0-002The Complete Beginner's Guide

Complete PenTest+ PT0-002 study guide — penetration testing planning, reconnaissance, attacks, reporting.

104 chapters
~43 hours total read
Free — no signup required

How to use this guide

This guide works best as a loop: read a chapter, test yourself with practice questions, look up unfamiliar terms in the glossary, then move to the next chapter.

① Read a chapter② Answer practice questions③ Review missed answers④ Repeat
Study Chapters

104 chapters covering every exam objective. Each chapter includes key concepts, exam tips, common traps, comparison tables, and a 5-question quiz at the end.

Start Chapter 1
Practice Questions

Free timed and untimed practice with instant feedback and full explanations. Pick 10–120 questions per session. Filter by domain to drill your weak areas.

Go to practice test
Glossary

Every PT0-002term defined and searchable. Use it when a chapter mentions a concept you haven't seen before or want a quick refresher on.

Browse glossary
Exam Overview

Exam blueprint, domain weights, passing score, duration, cost, and registration links. Start here if you're new to this certification.

View exam guide

Planning and Scoping (14%)

8 chapters

Domain overview

Information Gathering and Vulnerability Scanning (22%)

19 chapters

Domain overview

Attacks and Exploits (30%)

54 chapters

Domain overview
6

Network Exploitation

Objective 3.1 · Attacks Exploits

25m
7

Web Application Attacks

Objective 3.2 · Attacks Exploits

25m
8

Social Engineering Attacks

Objective 3.3 · Attacks Exploits

25m
9

Post-Exploitation Techniques

Objective 3.4 · Attacks Exploits

25m
10

Wireless and RF Attacks

Objective 3.5 · Attacks Exploits

25m
16

Metasploit Framework for PenTesters

Objective 3.1 · Attacks Exploits

25m
17

Burp Suite for Web Application Testing

Objective 3.2 · Attacks Exploits

25m
18

SQL Injection: Union, Blind, Time-Based

Objective 3.2 · Attacks Exploits

25m
19

Cross-Site Scripting (XSS) Types

Objective 3.2 · Attacks Exploits

25m
20

CSRF and SSRF Attacks

Objective 3.2 · Attacks Exploits

25m
21

Command Injection and Directory Traversal

Objective 3.2 · Attacks Exploits

25m
22

IDOR and Broken Access Control

Objective 3.2 · Attacks Exploits

25m
23

Mimikatz and Credential Extraction

Objective 3.4 · Attacks Exploits

25m
25

Privilege Escalation on Linux

Objective 3.4 · Attacks Exploits

25m
26

Privilege Escalation on Windows

Objective 3.4 · Attacks Exploits

25m
27

Lateral Movement Techniques

Objective 3.4 · Attacks Exploits

25m
28

Pivoting and Tunnelling Through Networks

Objective 3.4 · Attacks Exploits

25m
29

Cloud Pentesting: AWS and Azure

Objective 3.5 · Attacks Exploits

25m
30

Mobile Application Testing

Objective 3.5 · Attacks Exploits

25m
34

Phishing Campaigns in Penetration Testing

Objective 3.3 · Attacks Exploits

25m
35

Physical Security Testing Techniques

Objective 3.3 · Attacks Exploits

25m
36

Command and Control (C2) Framework Concepts

Objective 3.4 · Attacks Exploits

25m
53

Exploit Frameworks: Core Impact and Canvas

Objective 3.1 · Attacks Exploits

25m
54

Buffer Overflow Exploitation Concepts

Objective 3.1 · Attacks Exploits

25m
55

Remote Code Execution (RCE) Vulnerabilities

Objective 3.1 · Attacks Exploits

25m
56

SMB Exploitation: EternalBlue and PsExec

Objective 3.1 · Attacks Exploits

25m
57

Kerberoasting and AS-REP Roasting

Objective 3.4 · Attacks Exploits

25m
58

DCSync Attack and Domain Replication

Objective 3.4 · Attacks Exploits

25m
59

Golden Ticket and Silver Ticket Attacks

Objective 3.4 · Attacks Exploits

25m
60

LSASS Credential Dumping Methods

Objective 3.4 · Attacks Exploits

25m
61

Post-Exploitation File Transfer Techniques

Objective 3.4 · Attacks Exploits

25m
62

Persistence Mechanisms: Scheduled Tasks, Registry

Objective 3.4 · Attacks Exploits

25m
63

RDP Exploitation and BlueKeep

Objective 3.1 · Attacks Exploits

25m
64

Web Shells and Maintaining Access

Objective 3.2 · Attacks Exploits

25m
65

XXE Injection Attacks

Objective 3.2 · Attacks Exploits

25m
66

Insecure Deserialization Attacks

Objective 3.2 · Attacks Exploits

25m
67

JWT Token Attacks

Objective 3.2 · Attacks Exploits

25m
68

OAuth 2.0 and SSO Attacks

Objective 3.2 · Attacks Exploits

25m
69

VLAN Hopping and Network Pivoting

Objective 3.1 · Attacks Exploits

25m
70

DNS Poisoning and Spoofing

Objective 3.1 · Attacks Exploits

25m
71

WPA3 and Modern Wireless Attacks

Objective 3.5 · Attacks Exploits

25m
72

Bluetooth and BLE Attack Surface

Objective 3.5 · Attacks Exploits

25m
73

Evil Twin and Rogue AP Attacks

Objective 3.5 · Attacks Exploits

25m
74

AWS Pentesting: IAM Escalation, S3 Exposure

Objective 3.5 · Attacks Exploits

25m
75

Azure Pentesting Techniques

Objective 3.5 · Attacks Exploits

25m
76

Container Escape Techniques

Objective 3.5 · Attacks Exploits

25m
94

NTLM Relay Attacks and Responder

Objective 3.4 · Attacks Exploits

25m
95

Active Directory ACL Abuse

Objective 3.4 · Attacks Exploits

25m
96

AS-REP Roasting vs Kerberoasting

Objective 3.4 · Attacks Exploits

25m
97

IoT and SCADA/ICS Pentesting Concepts

Objective 3.5 · Attacks Exploits

25m
98

Pentesting AI and ML Systems

Objective 3.5 · Attacks Exploits

25m
99

Pass-the-Hash and Pass-the-Ticket Attacks

Objective 3.4 · Attacks Exploits

25m
100

Subdomain Takeover in Pentesting

Objective 3.2 · Attacks Exploits

25m
101

ARP Spoofing and MITM Attacks

Objective 3.1 · Attacks Exploits

25m

Reporting and Communication (18%)

7 chapters

Domain overview

Tools and Code Analysis (16%)

16 chapters

Domain overview

Ready to test your knowledge?

Free PT0-002 practice questions with full explanations. Test what you learn chapter by chapter.

PT0-002 Practice Questions