hardMultiple Choice
PT0-002 Practice Question: Based on the exhibit, which tool would be most…
Exhibit
Refer to the exhibit. Error log from a web application: ``` [2024-03-15 14:25:12] Script: /var/www/html/search.php Input: q=test' OR '1'='1 SQLSTATE[42000]: Syntax error or access violation: 1064 You have an error in your SQL syntax; check the manual that corresponds to your MySQL server version for the right syntax to use near ''1'='1' at line 1 ```
Based on the exhibit, which tool would be most effective for exploiting this vulnerability?
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
sqlmap
The error log shows a SQL injection vulnerability. SQLmap is designed to automate SQL injection exploitation. Burp Suite Repeater can manually craft requests, but sqlmap automates the process. Hydra is for password cracking, and Nikto is for web scanning.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Burp Suite Repeater
Why it's wrong here
Burp Suite Repeater is designed for manually resending and modifying individual HTTP requests to observe responses, but it lacks the ability to automate the multi-step exploitation sequence required by this vulnerability, which demands a scripted payload delivery and response parsing across several endpoints. It is tempting because Repeater excels at testing single-request injection flaws such as SQLi or XSS, where an attacker tweaks one request and inspects the immediate reply.
- ✗
Nikto
Why it's wrong here
Nikto is a web server scanner that primarily identifies misconfigurations, outdated software, and dangerous files using a signature database. While it can detect some vulnerability classes, it does not include a SQL injection engine capable of automatically enumerating database schema, extracting tables, or chaining multi-step payload delivery across endpoints. Its checks are passive and rely on HTTP response patterns, not an interactive database exploitation workflow.
- ✗
Hydra
Why it's wrong here
Hydra is a network login brute-forcing tool designed to guess credentials by testing many username/password pairs against protocols like HTTP-form-post, SSH, FTP, and SMB. It has no capability to craft or send SQL injection payloads, parse database error messages, or automate union- or blind-based queries. Hydra targets authentication mechanisms, not application-layer input validation flaws such as SQLi.
- ✓
sqlmap
Why this is correct
sqlmap is the correct tool because it is a dedicated SQL injection exploitation tool that automates the entire process: detecting the injection point, fingerprinting the database, enumerating schema and records, and even taking control of the host in some cases. It supports time-based, boolean-based, UNION-query, and stacked-query techniques, and it can handle multi-step HTTP interactions with session management and CSRF token handling. This makes it far more effective than manual request editing or general-purpose scanners for a vulnerability that requires automated payload delivery and response parsing across several endpoints.
Go deeper
Related to this question
Learn chapter
Command Injection and Directory Traversal
Key term
Exploitation
Exploitation is the act of using a vulnerability or weakness in a system, network, or application to gain unauthorized access, cause damage, or extract data.
Key term
Nikto
Nikto is an open-source web server scanner that tests for potentially dangerous files, outdated server software, and configuration issues.
About these practice questions
This PT0-003 question is part of Courseiva's 777-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This PT0-003 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the PT0-003 exam.