Courseiva

PT0-002 Vulnerability Discovery and Analysis Practice Question

A penetration tester is performing a cloud security audit of an AWS environment. Which tool is specifically designed for AWS exploitation and post-exploitation, including privilege escalation and persistence?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Pacu

Pacu is an AWS exploitation framework that provides modules for enumeration, privilege escalation, and persistence.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✓

    Pacu

    Why this is correct

    Pacu is the correct answer because it is an open-source AWS exploitation framework designed specifically for offensive cloud security testing. It automates attack chains against AWS environments, including privilege escalation, Lambda backdooring, and S3 bucket misconfiguration exploitation, making it the only option that directly performs exploitation rather than just auditing or reconnaissance.

  • ✗

    CrackMapExec

    Why it's wrong here

    CrackMapExec (CME) is incorrect because it is a post-exploitation and lateral-movement tool built for Active Directory environments, not cloud platforms. It focuses on SMB, WinRM, and LDAP protocols to attack Windows domain networks, whereas the question involves a cloud security audit, making it outside the tool's intended scope.

  • ✗

    ScoutSuite

    Why it's wrong here

    ScoutSuite is incorrect because it is a multi-cloud security auditing tool that assesses configurations against best practices, but it does not perform exploitation. It gathers and reports on misconfigurations in AWS, Azure, and GCP, but unlike Pacu, it lacks capabilities to actively exploit identified weaknesses or chain them into an attack.

  • ✗

    Prowler

    Why it's wrong here

    Prowler is incorrect because it is a security assessment tool that checks AWS accounts against the CIS AWS Foundations Benchmark and other standards, focusing on compliance and hardening. It is read-only and does not carry out exploitation actions, whereas the penetration tester's task in a cloud security audit would require active exploitation, which only Pacu provides.

Go deeper

Related to this question

About these practice questions

Courseiva writes every PT0-003 question from scratch — 777 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.