Courseiva
mediumMultiple Choice

PT0-002 Practice Question: A penetration tester needs to escalate privileges…

A penetration tester needs to escalate privileges on a Linux target after gaining initial shell access. The /etc/passwd file shows a user 'jake' with UID 0. What does this indicate?

⚠ Common exam trap

A common mix-up: candidates confuse UID 0 with group membership (GID 0) or assume it's a misconfiguration, when in fact the UID field in /etc/passwd directly determines superuser status, not the username or group.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

The user 'jake' has the same privileges as root

In Linux, a UID (User ID) of 0 is reserved exclusively for the root superuser. When the /etc/passwd file shows a user 'jake' with UID 0, the system treats 'jake' with the same privileges as root, regardless of the username. This is because the kernel checks the UID, not the username, for permission decisions. Therefore, 'jake' has full root-level access, making option C correct.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    The user 'jake' is a normal user with UID misconfiguration

    Why it's wrong here

    On Linux, a UID of 0 is not a misconfiguration—it is the defined identifier for the superuser (root). Even when the account has a different username, any process with effective UID 0 bypasses kernel permission checks and gains full root capabilities. Referring to jake as a 'normal user' is therefore incorrect; the account is root-equivalent by design, not by accident.

  • ✗

    The user 'jake' is a member of the root group

    Why it's wrong here

    The root group is identified by GID 0, not by UID 0. The finding in question concerns the user's UID, which is the account identifier, not a group membership. While being a member of GID 0 can grant access to some group-owned resources, it does not confer the superuser privileges that come with having UID 0. Confusing the root group with UID 0 is a separate error.

  • ✓

    The user 'jake' has the same privileges as root

    Why this is correct

    On Linux, the kernel's access-control checks equate any effective UID of 0 with the superuser, regardless of the username associated with that UID. The account name is just a human-readable label; when jake's UID is 0, the system treats every jake-run process as a root-owned process, granting full control over files, processes, and devices. This is precisely why a UID-0 account is said to have the same privileges as root.

  • ✗

    There is a duplicate user 'jake' and 'root'

    Why it's wrong here

    The /etc/passwd file can contain multiple entries that share the same UID, which is a duplicate UID, not a duplicate user. Having both 'root' and 'jake' with UID 0 means the two usernames map to the same kernel-level user identity, so they are not distinct accounts but aliases for the same superuser. The question tests the semantics of UID 0, not whether an actual duplicate user entry exists.

About these practice questions

One of 777 original PT0-003 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.