CompTIA PenTest+ PT0-003 (V3) Practice Question

During a penetration test, you discover that a client's cloud application still uses API keys generated more than two years ago, and none of those keys have ever been changed. Which remediation would MOST reduce the amount of time an attacker could continuously abuse a leaked key?

  • Increase the key length from 128-bit to 256-bit.

  • Restrict access to the key file to only the application service account.

  • Implement automated key rotation on a defined schedule.

  • Encrypt the existing keys at rest with AES-256 and store them in the same database.

CompTIA PenTest+ PT0-003 (V3)
Engagement Management
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

SAVE $51
$425.00 $374.00
SAVE $57
CompTIA PenTest+ Voucher with Retake
v3 / PT0-003
Includes Retake
$474.00 $417.00
Bash, the Crucial Exams Chat Bot
AI Bot