2026 Advanced CompTIA PenTest+ practice exam updated November 2025, featuring ethical hacking scenarios, vulnerability assessment, exploitation techniques, post-exploitation, reporting, and professional cybersecurity preparation. 1. Which one of the following tools is NOT a password cracking utility? A. OWASP ZAP B. Cain and Abel C. Hashcat D. John the Ripper 2. Which one of the following vulnerability scanners is specifically designed to test the security of web applications against a wide variety of attacks? A. OpenVAS B. Nessus C. sqlmap D. Nikto 3. Which one of the following debugging tools does not support Windows systems? A. GDB B. OllyDbg C. WinDbg D. IDA 4. What is the final stage of the Cyber Kill Chain? A. Weaponization B. Installation C. Actions on Objectives D. Command and Control5. Which one of the following activities assumes that an organization has already been compromised? A. Penetration testing B. Threat hunting C. Vulnerability scanning D. Software testing 6. Robert is creating a list of recommendations that his organization can follow to remediate issues identified during a penetration test. In what phase of the testing process is Robert participating? A. Planning and Scoping B. Reporting and Communicating Results C. Attacking and Exploiting D. Information Gathering and Vulnerability