Password Attacks and Credential Testing Flashcards
7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Password Attacks and Credential Testing flashcards as text
A rainbow table attack is effective because it trades which resource for speed in password cracking?
Answer: CPU time for storage space
Rainbow tables pre-compute and store hash-to-plaintext chains, trading disk storage space for dramatically reduced cracking computation time.
Which technique adds a random value to a password before hashing to defend against rainbow table attacks?
Answer: Salting
Salting appends or prepends a unique random value (salt) to each password before hashing, making pre-computed rainbow tables ineffective.
When using Hashcat to crack an NTLM hash, which hash type (-m) value should be specified?
Answer: -m 1000
Hashcat uses -m 1000 for NTLM hashes, which are the Windows password hash format stored in the SAM database and NTDS.dit.
Which tool can extract NTLM password hashes from a Windows SAM database?
Answer: Mimikatz
Mimikatz is a post-exploitation tool capable of dumping NTLM hashes and plaintext credentials from Windows memory and the SAM database.
What is a Pass-the-Hash (PtH) attack?
Answer: Using a captured NTLM hash to authenticate without knowing the plaintext password
Pass-the-Hash exploits Windows authentication by using a captured NTLM hash directly for authentication, bypassing the need to crack it to plaintext.
Which Medusa command targets FTP on host 10.10.10.5 with user 'ftp' and a password list?
Answer: medusa -h 10.10.10.5 -u ftp -P passwords.txt -M ftp
Medusa uses -h for host, -u for a single username, -P for a password file, and -M to specify the protocol module (ftp).
What does the rockyou.txt wordlist contain and where is it typically found on Kali Linux?
Answer: Passwords leaked from the RockYou breach; located at /usr/share/wordlists/rockyou.txt
rockyou.txt contains ~14 million passwords from the 2009 RockYou data breach and is the most commonly used password wordlist on Kali Linux at /usr/share/wordlists/rockyou.txt.