Question 706

While analyzing suspicious network activity, you observe a slow, stealthy scanning technique that is difficult to trace back to the attacker. Which scenario best describes the scanning technique being used?
  • Question 707

    An organization uses Active Directory with Kerberos authentication. During internal enumeration, a tester identifies several service accounts that have Service Principal Names (SPNs) assigned.
    Which attack technique attempts to obtain encrypted service tickets for offline password cracking?
  • Question 708

    An attacker with access to the inside network of a small company launches a successful STP manipulation attack. What will he do next?
  • Question 709

    The configuration allows a wired or wireless network interface controller to pass all traffic it receives to the Central Processing Unit (CPU), rather than passing only the frames that the controller is intended to receive. Which of the following is being described?
  • Question 710

    A financial institution in San Francisco suffers a breach where attackers install malware that captures customer account credentials. The stolen data is then sold on underground forums for profit. No political or social statements are made, and the attackers remain anonymous while continuing to target similar organizations for financial gain. Based on this activity, what category of hacker is most likely responsible?