Network Security & Vulnerability Flashcards
7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.
Read the first 7 Network Security & Vulnerability flashcards as text
Which network protocol is exploited in a 'Smurf attack'?
Answer: ICMP with broadcast amplification
A Smurf attack sends ICMP Echo Requests spoofed with the victim's IP to a broadcast address, causing all hosts on the network to reply to the victim, overwhelming it.
When using Wireshark to analyze a capture, a tester filters with 'tcp.flags.syn == 1 && tcp.flags.ack == 0'. What traffic is displayed?
Answer: Initial TCP SYN packets (connection initiation attempts)
This Wireshark filter isolates TCP packets that have the SYN flag set but not the ACK flag, which are the initial connection-request packets in the TCP handshake.
What is the primary security risk of using TELNET for remote administration?
Answer: It transmits all data including credentials in plaintext
Telnet transmits all data — including usernames and passwords — in cleartext, making it trivial for an attacker with network access to capture credentials via sniffing.
A network segment uses the address 10.10.10.0/24. How many usable host IP addresses does this subnet provide?
Answer: 254
A /24 subnet has 256 total addresses; subtracting the network address (10.10.10.0) and broadcast address (10.10.10.255) leaves 254 usable host addresses.
Which Metasploit command is used to search for modules related to a specific vulnerability or service?
Answer: search
The `search` command in msfconsole allows users to find modules by keyword, CVE number, platform, or module type across the entire Metasploit framework database.
What does the acronym 'OSINT' stand for in the context of penetration testing?
Answer: Open Source Intelligence
OSINT (Open Source Intelligence) refers to collecting information about a target from publicly available sources such as websites, social media, DNS records, and public databases.
Which of the following correctly describes a 'man-in-the-middle' (MitM) attack?
Answer: Intercepting and potentially altering communication between two parties without their knowledge
In a MitM attack, an adversary positions themselves between two communicating parties, secretly intercepting and potentially modifying the traffic in transit.