CompTIA PenTest+ PT0-003 (V3) Practice Question

A penetration tester is assessing a network protected by a signature-based Intrusion Detection System (IDS). Initial scans using default Nmap settings are being blocked. The tester decides to use scripting and Nmap's advanced options to customize the scan and evade detection. Which of the following approaches would be most effective at modifying the scan's traffic pattern to bypass the IDS?

  • Using the -sS (SYN scan) and -A (Aggressive scan) options together to quickly identify all open ports and services.

  • Writing a Bash script to execute nmap -sT (TCP Connect scan) on all 65,535 ports for each host sequentially.

  • Implementing a script that randomizes target hosts, fragments packets, and introduces significant, variable time delays between probes.

  • Utilizing the --system-dns option to resolve hostnames for all IPs in the target subnet before scanning.

CompTIA PenTest+ PT0-003 (V3)
Attacks and Exploits
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot