mediumMultiple Choice
PT0-002 Practice Question: A penetration tester needs to escalate privileges…
A penetration tester needs to escalate privileges on a Linux target after gaining initial shell access. The /etc/passwd file shows a user 'jake' with UID 0. What does this indicate?
⚠ Common exam trap
A common mix-up: candidates confuse UID 0 with group membership (GID 0) or assume it's a misconfiguration, when in fact the UID field in /etc/passwd directly determines superuser status, not the username or group.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
The user 'jake' has the same privileges as root
In Linux, a UID (User ID) of 0 is reserved exclusively for the root superuser. When the /etc/passwd file shows a user 'jake' with UID 0, the system treats 'jake' with the same privileges as root, regardless of the username. This is because the kernel checks the UID, not the username, for permission decisions. Therefore, 'jake' has full root-level access, making option C correct.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
The user 'jake' is a normal user with UID misconfiguration
Why it's wrong here
On Linux, a UID of 0 is not a misconfiguration—it is the defined identifier for the superuser (root). Even when the account has a different username, any process with effective UID 0 bypasses kernel permission checks and gains full root capabilities. Referring to jake as a 'normal user' is therefore incorrect; the account is root-equivalent by design, not by accident.
- ✗
The user 'jake' is a member of the root group
Why it's wrong here
The root group is identified by GID 0, not by UID 0. The finding in question concerns the user's UID, which is the account identifier, not a group membership. While being a member of GID 0 can grant access to some group-owned resources, it does not confer the superuser privileges that come with having UID 0. Confusing the root group with UID 0 is a separate error.
- ✓
The user 'jake' has the same privileges as root
Why this is correct
On Linux, the kernel's access-control checks equate any effective UID of 0 with the superuser, regardless of the username associated with that UID. The account name is just a human-readable label; when jake's UID is 0, the system treats every jake-run process as a root-owned process, granting full control over files, processes, and devices. This is precisely why a UID-0 account is said to have the same privileges as root.
- ✗
There is a duplicate user 'jake' and 'root'
Why it's wrong here
The /etc/passwd file can contain multiple entries that share the same UID, which is a duplicate UID, not a duplicate user. Having both 'root' and 'jake' with UID 0 means the two usernames map to the same kernel-level user identity, so they are not distinct accounts but aliases for the same superuser. The question tests the semantics of UID 0, not whether an actual duplicate user entry exists.
Go deeper
Related to this question
About these practice questions
One of 777 original PT0-003 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.