Question 111

A penetration tester gains access to a system and is able to migrate to a user process:

Given the output above, which of the following actions is the penetration tester performing? (Choose two.)
  • Question 112

    Which of the following types of assessments MOST likely focuses on vulnerabilities with the objective to access specific data?
  • Question 113

    The attacking machine is on the same LAN segment as the target host during an internal penetration test.
    Which of the following commands will BEST enable the attacker to conduct host delivery and write the discovery to files without returning results of the attack machine?
  • Question 114

    A penetration tester is conducting an unknown environment test and gathering additional information that can be used for later stages of an assessment. Which of the following would most likely produce useful information for additional testing?
  • Question 115

    For a penetration test engagement, a security engineer decides to impersonate the IT help desk. The security engineer sends a phishing email containing an urgent request for users to change their passwords and a link to
    https://example.com/index.html. The engineer has designed the attack so that once the users enter the credentials, the index.html page takes the credentials and then forwards them to another server that the security engineer is controlling. Given the following information:

    Which of the following lines of code should the security engineer add to make the attack successful?