โ† All EJPT Flashcard Decks

Password Attacks and Credential Testing Flashcards

7 cards from real EJPT practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Password Attacks and Credential Testing flashcards as text
  1. A rainbow table attack is effective because it trades which resource for speed in password cracking?

    Answer: CPU time for storage space

    Rainbow tables pre-compute and store hash-to-plaintext chains, trading disk storage space for dramatically reduced cracking computation time.

  2. Which technique adds a random value to a password before hashing to defend against rainbow table attacks?

    Answer: Salting

    Salting appends or prepends a unique random value (salt) to each password before hashing, making pre-computed rainbow tables ineffective.

  3. When using Hashcat to crack an NTLM hash, which hash type (-m) value should be specified?

    Answer: -m 1000

    Hashcat uses -m 1000 for NTLM hashes, which are the Windows password hash format stored in the SAM database and NTDS.dit.

  4. Which tool can extract NTLM password hashes from a Windows SAM database?

    Answer: Mimikatz

    Mimikatz is a post-exploitation tool capable of dumping NTLM hashes and plaintext credentials from Windows memory and the SAM database.

  5. What is a Pass-the-Hash (PtH) attack?

    Answer: Using a captured NTLM hash to authenticate without knowing the plaintext password

    Pass-the-Hash exploits Windows authentication by using a captured NTLM hash directly for authentication, bypassing the need to crack it to plaintext.

  6. Which Medusa command targets FTP on host 10.10.10.5 with user 'ftp' and a password list?

    Answer: medusa -h 10.10.10.5 -u ftp -P passwords.txt -M ftp

    Medusa uses -h for host, -u for a single username, -P for a password file, and -M to specify the protocol module (ftp).

  7. What does the rockyou.txt wordlist contain and where is it typically found on Kali Linux?

    Answer: Passwords leaked from the RockYou breach; located at /usr/share/wordlists/rockyou.txt

    rockyou.txt contains ~14 million passwords from the 2009 RockYou data breach and is the most commonly used password wordlist on Kali Linux at /usr/share/wordlists/rockyou.txt.