<< Prev Question Next Question >>

Question 52/137

A penetration tester is researching a path to escalate privileges. While enumerating current user privileges, the tester observes the following output:
mathematica
Copy code
SeAssignPrimaryTokenPrivilege Disabled
SeIncreaseQuotaPrivilege Disabled
SeChangeNotifyPrivilege Enabled
SeManageVolumePrivilege Enabled
SeImpersonatePrivilege Enabled
SeCreateGlobalPrivilege Enabled
SeIncreaseWorkingSetPrivilege Disabled
Which of the following privileges should the tester use to achieve the goal?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (137q)
Question 1: A penetration tester is trying to bypass a command injection...
Question 2: A penetration tester is testing a power plant ' s network an...
Question 3: A penetration tester reviews a SAST vulnerability scan repor...
Question 4: A penetration tester gains shell access to a Windows host. T...
Question 5: During a penetration test, a junior tester uses Hunter.io fo...
Question 6: A penetration tester attempts to obtain the preshared key fo...
Question 7: A penetration tester finished a security scan and uncovered ...
Question 8: During a security assessment for an internal corporate netwo...
Question 9: A penetration tester is getting ready to conduct a vulnerabi...
Question 10: During an assessment, a penetration tester obtains a low-pri...
Question 11: A client warns the assessment team that an ICS application i...
Question 12: A tester wants to pivot from a compromised host to another n...
Question 13: A penetration tester needs to scan a remote infrastructure w...
Question 14: A penetration tester established an initial compromise on a ...
Question 15: A penetration tester is trying to get unauthorized access to...
Question 16: In a cloud environment, a security team discovers that an at...
Question 17: A penetration tester must identify hosts without alerting an...
Question 18: During an engagement, a penetration tester needs to break th...
Question 19: Given the following statements: Implement a web application ...
Question 20: Which of the following will reduce the possibility of introd...
Question 21: A penetration tester is conducting an assessment of a web ap...
Question 22: Before starting an assessment, a penetration tester needs to...
Question 23: Which of the following explains the reason a tester would op...
Question 24: A penetration tester is attempting to exfiltrate sensitive d...
Question 25: A penetration tester writes a Bash script to automate the ex...
Question 26: A penetration tester conducts reconnaissance for a client ' ...
Question 27: A penetration tester cannot find information on the target c...
Question 28: As part of a penetration test, a tester needs to discover sy...
Question 29: A penetration tester is conducting a wireless security asses...
Question 30: A penetration tester is conducting an assessment on a networ...
Question 31: In a file stored in an unprotected source code repository, a...
Question 32: A penetration tester compromises a Windows OS endpoint that ...
Question 33: A penetration tester needs to identify all vulnerable input ...
Question 34: A penetration testing team needs to determine whether it is ...
Question 35: A penetration tester finds that an application responds with...
Question 36: As part of a security audit, a penetration tester finds an i...
Question 37: During an assessment, a penetration tester manages to get RD...
Question 38: A penetration tester gains access to a host with many applic...
Question 39: You are a penetration tester running port scans on a server....
Question 40: A penetration tester needs to confirm the version number of ...
Question 41: During a penetration test, a tester captures information abo...
Question 42: A penetration tester is searching for vulnerabilities or mis...
Question 43: A penetration tester obtains a regular domain user ' s set o...
Question 44: With one day left to complete the testing phase of an engage...
Question 45: A penetration tester discovers a deprecated directory in whi...
Question 46: During an engagement, a penetration tester wants to enumerat...
Question 47: During a security assessment, a penetration tester needs to ...
Question 48: A penetration tester finds an unauthenticated RCE vulnerabil...
Question 49: A tester gains initial access to a server and needs to enume...
Question 50: Which of the following frameworks can be used to classify th...
Question 51: During a vulnerability assessment, a penetration tester conf...
Question 52: A penetration tester is researching a path to escalate privi...
Question 53: Severity: HIGH Vulnerability: ABC Load Balancer: Alpha OS ht...
Question 54: A penetration tester has just started a new engagement. The ...
Question 55: A penetration tester has completed an engagement and is perf...
Question 56: A tester plans to perform an attack technique over a comprom...
Question 57: A penetration tester wants to automatically enumerate all ci...
Question 58: A penetration tester needs to evaluate the order in which th...
Question 59: A penetration tester runs a network scan but has some issues...
Question 60: During an assessment, a penetration tester sends the followi...
Question 61: Which of the following elements in a lock should be aligned ...
Question 62: While conducting OSINT, a penetration tester discovers the c...
Question 63: A tester performs a vulnerability scan and identifies severa...
Question 64: A penetration tester is authorized to perform a DoS attack a...
Question 65: A penetration tester uses the Intruder tool from the Burp Su...
Question 66: Which of the following is the most efficient way to infiltra...
Question 67: During a penetration test, the tester wants to obtain public...
Question 68: During a discussion of a penetration test final report, the ...
Question 69: A company hires a penetration tester to test the security im...
Question 70: Which of the following elements of a penetration test report...
Question 71: A penetration tester gained a foothold within a network. The...
Question 72: A penetration tester is configuring a vulnerability manageme...
Question 73: During host discovery, a security analyst wants to obtain Ge...
Question 74: A penetration tester aims to exploit a vulnerability in a wi...
Question 75: A penetration tester is developing the rules of engagement f...
Question 76: A penetration tester gains access to a Windows machine and w...
Question 77: A penetration tester is researching a path to escalate privi...
Question 78: A penetration tester downloads a JAR file that is used in an...
Question 79: A penetration tester launches an attack against company empl...
Question 80: A penetration tester wants to create a malicious QR code to ...
Question 81: A penetration tester gains access to a host but does not hav...
Question 82: A previous penetration test report identified a host with vu...
Question 83: Which of the following is within the scope of proper handlin...
Question 84: A penetration tester presents the following findings to stak...
Question 85: A penetration tester writes the following script to enumerat...
Question 86: A penetration tester wants to bypass multi-factor authentica...
Question 87: A penetration tester has finished drafting the final engagem...
Question 88: While performing a penetration testing exercise, a tester ex...
Question 89: During a penetration test, the tester uses a vulnerability s...
Question 90: A penetration tester wants to check the security awareness o...
Question 91: A penetration tester needs to obtain sensitive data from sev...
Question 92: During an assessment, a penetration tester runs the followin...
Question 93: auth=yYKGORbrpabgr842ajbvrpbptaui42342 When the tester logs ...
Question 94: A penetration tester finds that an application responds with...
Question 95: A penetration tester plans to conduct reconnaissance during ...
Question 96: During a red-team exercise, a penetration tester obtains an ...
Question 97: A penetration tester finished a security scan and uncovered ...
Question 98: A penetration tester is attempting to discover vulnerabiliti...
Question 99: A penetration tester is conducting reconnaissance for an upc...
Question 100: During an assessment, a penetration tester obtains access to...
Question 101: A client recently hired a penetration testing firm to conduc...
Question 102: Which of the following components should a penetration teste...
Question 103: A penetration tester is working on a security assessment of ...
Question 104: A tester is finishing an engagement and needs to ensure that...
Question 105: A penetration tester performs a service enumeration process ...
Question 106: A penetration tester successfully gained access to manage re...
Question 107: SIMULATION Using the output, identify potential attack vecto...
Question 108: During an assessment, a penetration tester obtains an NTLM h...
Question 109: Which of the following are valid reasons for including base,...
Question 110: A penetration tester needs to exploit a vulnerability in a w...
Question 111: A penetration tester enters an invalid user ID on the login ...
Question 112: A penetration testing team needs to determine whether it is ...
Question 113: A penetration tester gains initial access to an endpoint and...
Question 114: A penetration tester performs a service enumeration process ...
Question 115: A penetration tester is performing reconnaissance for a web ...
Question 116: An external legal firm is conducting a penetration test of a...
Question 117: A penetration tester cannot complete a full vulnerability sc...
Question 118: Which of the following is most important when communicating ...
Question 119: Which of the following is a term used to describe a situatio...
Question 120: A penetration tester wants to use multiple TTPs to assess th...
Question 121: A penetration tester wants to collect credentials against an...
Question 122: While conducting an assessment, a penetration tester identif...
Question 123: A penetration tester enumerates a legacy Windows host on the...
Question 124: A penetration tester runs a vulnerability scan that identifi...
Question 125: During a penetration test, the tester gains full access to t...
Question 126: A penetration tester needs to test a very large number of UR...
Question 127: During an external penetration test, a tester receives the f...
Question 128: A penetration tester successfully gains access to a Linux sy...
Question 129: During a penetration test, a tester attempts to pivot from o...
Question 130: A penetration tester needs to use the native binaries on a s...
Question 131: During an assessment on a client that uses virtual desktop i...
Question 132: A client recently hired a penetration testing firm to conduc...
Question 133: Which of the following activities should be performed to pre...
Question 134: A penetration tester is enumerating a Linux system. The goal...
Question 135: Which of the following is the most likely LOLBin to be used ...
Question 136: During a web application assessment, a penetration tester id...
Question 137: A penetration tester completes a scan and sees the following...