exam questions

Exam PT0-001 All Questions

View all questions & answers for the PT0-001 exam

Exam PT0-001 topic 1 question 124 discussion

Actual exam question from CompTIA's PT0-001
Question #: 124
Topic #: 1
[All PT0-001 Questions]

A tester has determined that null sessions are enabled on a domain controller. Which of the following attacks can be performed to leverage this vulnerability?

  • A. RID cycling to enumerate users and groups
  • B. Pass the hash to relay credentials
  • C. Password brute forcing to log into the host
  • D. Session hijacking to impersonate a system account
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
mr_robot
Highly Voted 5 years ago
A - PenTest+ - Practice Test book - SYBEX One of the first steps when looking to gain access to a host, system, or application is to enumerate usernames. Once usernames are guessed, targeted password-based attacks can then be attempted. A RID cycling attack attempts to enumerate user accounts through null sessions. If a tester specifies a password file, it will automatically attempt to brute force the user accounts when it’s finished enumerating. So, in this scenario, attempting RID cycling will be the next step the tester should try.
upvoted 11 times
mr_robot
4 years, 11 months ago
https://sensepost.com/blog/2018/a-new-look-at-null-sessions-and-user-enumeration/ https://securityonline.info/rid-enum-null-session-rid-cycle-attack/ https://www.trustedsec.com/blog/new-tool-release-rpc_enum-rid-cycling-attack/
upvoted 6 times
...
...
kloug
Most Recent 2 years, 2 months ago
aaaaaaaaaaaa
upvoted 1 times
...
miabe
2 years, 9 months ago
Selected Answer: A
looks good to me
upvoted 1 times
...
carletten
3 years, 8 months ago
It's A check RID Enum tool and how it works: Rid Enum is a RID cycling attack that attempts to enumerate user accounts through null sessions and the SID to RID enum.
upvoted 3 times
MrRiver
3 years, 7 months ago
you can do B and C even if null sessions are not enable. D.) seems to me like a mixture of some words that sound good but make no sense ... A.) Seems right
upvoted 1 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago