<< Prev Question Next Question >>

Question 68/71

During an internal network penetration test, a tester recovers the NTLM password hash tor a user known to have full administrator privileges on a number of target systems Efforts to crack the hash and recover the plaintext password have been unsuccessful Which of the following would be the BEST target for continued exploitation efforts?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (71q)
Question 1: Click the exhibit button. (Exhibit) A penetration tester is ...
Question 2: A consultant is identifying versions of Windows operating sy...
Question 3: Which of the following properties of the penetration testing...
Question 4: A penetration tester delivers a web application vulnerabilit...
Question 5: A penetration tester is utilizing social media to gather inf...
Question 6: A penetration tester reviews the scan results of a web appli...
Question 7: A penetration tester has been asked to conduct OS fingering ...
Question 8: While engaging clients for a penetration test from highly re...
Question 9: An assessor begins an internal security test of the Windows ...
Question 10: The following line was found in an exploited machine's histo...
Question 11: Joe, an attacker, intends to transfer funds discreetly from ...
Question 12: An organization has requested that a penetration test be per...
Question 13: A penetration tester observes that several high numbered por...
Question 14: Which of the following attacks is commonly combined with cro...
Question 15: While reviewing logs, a web developer notices the following ...
Question 16: In which of the following scenarios would a tester perform a...
Question 17: A penetration tester executes the following commands: C:\&gt...
Question 18: A penetration tester locates a few unquoted service paths du...
Question 19: Defining exactly what is to be tested and the results to be ...
Question 20: Which of the following BEST describes the difference between...
Question 21: A tester has determined that null sessions are enabled on a ...
Question 22: A client has voiced concern about the number of companies be...
Question 23: A security analyst has uncovered a suspicious request in the...
Question 24: Black box penetration testing strategy provides the tester w...
Question 25: If a security consultant comes across a password hash that r...
Question 26: Which of the following situations would cause a penetration ...
Question 27: A penetration tester ran the following Nmap scan on a comput...
Question 28: A company requested a penetration tester review the security...
Question 29: After an Nmap NSE scan, a security consultant is seeing inco...
Question 30: A penetration tester has been asked to conduct a penetration...
Question 31: Which of the following reasons does penetration tester needs...
Question 32: Performance based You are a penetration Inter reviewing a cl...
Question 33: Consider the following PowerShell command: powershell.exe IE...
Question 34: A security consultant found a SCADA device in one of the VLA...
Question 35: When conducting reconnaissance against a target, which of th...
Question 36: The results of a basic compliance scan show a subset of asse...
Question 37: A penetration tester is performing a black box assessment on...
Question 38: A penetration tester was able to retrieve the initial VPN us...
Question 39: Which of Ihe following commands would allow a penetration te...
Question 40: A penetration tester is required to perform OSINT on staff a...
Question 41: Given the following script: (Exhibit) Which of the following...
Question 42: A penetration tester runs the following from a compromised b...
Question 43: During a full-scope security assessment, which of the follow...
Question 44: A financial institution is asking a penetration tester to de...
Question 45: A company planned for and secured the budget to hire a consu...
Question 46: While monitoring WAF logs, a security analyst discovers a su...
Question 47: A penetration tester is using the Onesixtyone tool on Kali L...
Question 48: A client requests that a penetration tester emulate a help d...
Question 49: A penetration tester has been asked to conduct OS fingering ...
Question 50: A penetration tester calls human resources and begins asking...
Question 51: A penetration tester was able to enter an SQL injection comm...
Question 52: While trying to maintain persistence on a Windows system wit...
Question 53: Which of the following excerpts would come from a corporate ...
Question 54: A penetration tester is in the process of writing a report t...
Question 55: A penetration tester obtained access to an internal host of ...
Question 56: In a physical penetration tester testing scenario. the penet...
Question 57: Which of the following is the purpose of an NDA?...
Question 58: A penetration tester has performed a security assessment for...
Question 59: A penetration tester is able to move laterally throughout a ...
Question 60: A constant wants to scan all the TCP Pots on an identified d...
Question 61: A penetration test was performed by an on-staff junior techn...
Question 62: When performing compliance-based assessments, which of the f...
Question 63: A penetration tester has a full shell to a domain controller...
Question 64: A web server is running PHP, and a penetration tester is usi...
Question 65: A penetration tester compromises a system that has unrestric...
Question 66: An internal network penetration test is conducted against a ...
Question 67: A company has engaged a penetration tester to perform an ass...
Question 68: During an internal network penetration test, a tester recove...
Question 69: A tester intends to run the following command on a target sy...
Question 70: Joe, a penetration tester, has received basic account creden...
Question 71: A client is asking a penetration tester to evaluate a new we...