← All OSCP Flashcard Decks

Kali Linux Flashcards

7 cards from real OSCP practice questions. Tap to flip, then mark Knew It or Still Learning — missed cards come back until you master them.

Read the first 7 Kali Linux flashcards as text
  1. Which Kali Linux tool is specifically designed for brute-forcing web application login forms over HTTP?

    Answer: hydra with http-post-form module

    Hydra's http-post-form module allows specifying the form URL, parameters, and failure string to brute-force web login forms.

  2. What is the Kali Linux command to start the PostgreSQL database service required by Metasploit?

    Answer: Both commands are needed — service postgresql start then msfdb init

    PostgreSQL must first be started with 'service postgresql start', then 'msfdb init' initializes and connects the Metasploit database.

  3. In Kali Linux, which tool converts Windows password hashes from a SAM file dump into a crackable format?

    Answer: Both samdump2 and pwdump7 extract hashes from SAM files

    Both samdump2 (used offline with the SYSTEM hive) and pwdump7 (runs on live Windows) can extract NTLM hashes from the SAM database.

  4. What Kali Linux tool performs passive OS fingerprinting by analyzing traffic captures without sending any packets?

    Answer: p0f

    p0f (Passive OS Fingerprinting) identifies operating systems by analyzing TCP/IP stack characteristics in captured traffic without generating any probe packets.

  5. When using Kali Linux's Burp Suite in intercept mode, what must be configured in the browser to route traffic through Burp?

    Answer: The browser's proxy settings must point to Burp's listener (127.0.0.1:8080 by default)

    Burp Suite acts as an HTTP proxy, so the browser must be configured to send traffic through 127.0.0.1:8080 (Burp's default listener address and port).

  6. Which Kali Linux command would enumerate all users on a Linux system that have a valid login shell?

    Answer: cat /etc/passwd | grep -v nologin | grep -v false

    Filtering /etc/passwd to exclude 'nologin' and 'false' shells reveals accounts with valid interactive login shells.

  7. In Kali Linux, what does the 'crunch' tool generate and how is it used in OSCP scenarios?

    Answer: Generates custom wordlists based on character sets and length parameters

    Crunch creates custom wordlists by specifying minimum/maximum length and character sets, useful for targeted password attacks when password policy is known.