A PenTester caused Windows to dump information from RAM that was not in cleartext but was able to use the information to log on to a target. What kind of attack did the PenTester launch?A.Lateral movementB.Upgrade of a restrictive shellC.Pass the hashD.Privilege escalation
Question
A PenTester caused Windows to dump information from RAM that was not in cleartext but was able to use the information to log on to a target. What kind of attack did the PenTester launch?A.Lateral movementB.Upgrade of a restrictive shellC.Pass the hashD.Privilege escalation
Solution
The kind of attack the PenTester launched is C. Pass the hash.
Here's a step-by-step explanation:
-
The PenTester caused Windows to dump information from RAM. This means they were able to access the memory of the system, which can contain sensitive information.
-
The information was not in cleartext. This means it was likely encrypted or hashed in some way, making it more difficult to understand or use directly.
-
Despite this, the PenTester was able to use the information to log on to a target. This suggests they were able to use the hashed information to authenticate themselves.
-
The only option that fits these criteria is "Pass the hash". This is a type of attack where the attacker steals the hashed version of a password (which can be found in RAM) and uses it to authenticate themselves, without needing to know the actual password.
So, the PenTester launched a "Pass the hash" attack.
Similar Questions
Ben’s system was infected by malicious code that modified the operating system to allow the malicious code author to gain access to his files. What type of exploit did this attacker engage in?Group of answer choicesBackdoorBuffer overflowRootkitPrivilege escalation
Ben’s system was infected by malicious code that modified the operating system to allow the malicious code author to gain access to his files. What type of exploit did this attacker engage in?Group of answer choicesRootkitPrivilege escalationBackdoorBuffer overflow
Ben’s system was infected by malicious code that modified the operating system to allow the malicious code author to gain access to his files. What type of exploit did this attacker engage in?Group of answer choicesRootkitBuffer overflowBackdoorPrivilege escalation
60.0% completeQuestionA PenTester is gathering passwords by extracting them in cleartext from memory. What tool is the PenTester using?A.HashcatB.BrutesprayC.CeWLD.Mimikatz
A _____ employs hacking techniques and tools to test the strength of an organization’s defenses.PenTestPhreak testrisk analysisvulnerability assessme
Upgrade your grade with Knowee
Get personalized homework help. Review tough concepts in more detail, or go deeper into your topic by exploring other relevant questions.