1/28
Looks like no tags are added yet.
Name | Mastery | Learn | Test | Matching | Spaced | Call with Kai | Chat |
|---|
No analytics yet
Send a link to your students to track their progress
Given below are the various phases involved in the cyber kill chain methodology.
Installation
Delivery
Reconnaissance
Actions on objectives
Weaponization
Exploitation
Command and control
3 -> 5 -> 2 -> 6 -> 1 -> 7 -> 4
John, a professional hacker, targeted a newly joined employee of an organization. He sent a malicious payload via a phishing email that insisted that the user reset his official account’s password on a priority basis and warned that his account would be blocked if the email were ignored.
Identify the phase ofcyber kill chain methodologyJohn has performed in the above scenario.
delivery
installation
adversary downloads and installs more malicious software on the target system to maintain access to the target network for an extended period.
exploitation
After the weapon is transmitted to the intended victim, exploitation triggers the adversary’s malicious code to exploit a vulnerability in the operating system, application, or server on a target system.
reconnaissance
An adversary performs reconnaissance to collect as much information about the target as possible to probe for weak points before actually attacking. They look for information such as publicly available information on the Internet, network information, system information, and the organizational information of the target.
Clara, a security professional, while checking the data feeds of the domains, detects downloaded malicious files and unsolicited communication with the outside network based on the domains.
Which of the following adversary behaviors was detected by Clara?
unspecified proxy activities
James, a professional hacker, successfully penetrated the target’s network and now wants to gather as much information as possible. To achieve this, he uses a technique that can collect and combine as much information as possible, including business tactics of the organization, financial information, and network infrastructure information.
Which of the following techniques was used by James in the above scenario?
data staging
Adele, a professional hacker, initiated an attack on an organization. During the course of this attack, he established a two-way communication channel between the target system and his server to communicate and pass data back and forth. Additionally, he employed encryption to hide the communication channel.
Which of the following phases of cyber kill chain methodology was Adele performing in the above scenario?
command and control
Command and control
The adversary creates a command-and-control channel, which establishes two-way communication between the victim’s system and adversary-controlled server to communicate and pass data back and forth.
Weaponization
The adversary analyzes the data collected in the previous stage to identify the vulnerabilities and techniques that can exploit and gain unauthorized access to the target organization.
Given below are the various phases of hacking.
Reconnaissance
Gaining access
Maintaining access
Clearing tracks
Scanning
What is the correct sequence of phases involved in hacking?
|
In which of the following phases of hacking does an attacker employ steganography and tunneling techniques to retain access to the victim’s system, remain unnoticed, and remove evidence that might lead to prosecution?
clearing tracks
in which of the following hacking phases do attackers extract information such as live machines, port, port status, OS details, device type, and system uptime to launch further attacks?
scanning
Lopez, a penetration tester, executes different phases of the hacking cycle in her organization. She detects that the network is susceptible to password cracking, buffer overflows, denial of service, and session hijacking attacks.
Identify the hacking phase Lopez was executing in the above scenario.
gaining acess
John, a security specialist, was requested by a client organization to check whether the security testing process was performed according to standard. He implemented a security audit on the organization’s network to ensure that the performed test was well-organized, efficient, and ethical.
John has conducted the audit following the steps given below.
Talk to the client and discuss the needs to be addressed during testing
Analyze the results of the testing and prepare a report
Organize an ethical hacking team and prepare a schedule for testing
Conduct the test
Prepare and sign NDA documents with the client
Present the findings to the client
Identify the correct sequence of the steps John has followed while performing the security audit.
1 -> 5 -> 3 -> 4 -> 2 -> 6
Which of the following Google advanced search operators displays websites that are similar to the URL specified?
related
cache
this operator displays Google's cached version of a web page instead of the current version of the web page.
allinurl
Restricts the results to those containing all the search keywords in the URL.
info
This operator finds information for the specified web page.
Megaping
MegaPing includes scanners such as Comprehensive Security Scanner, Port scanner (TCP and UDP ports), IP scanner, NetBIOS scanner, and Share Scanner. It provides the following information: NetBIOS names, Configuration info, open TCP and UDP ports, Transports, Shares, Users, Groups, Services, Drivers, Local Drives, Sessions, and Remote Time of Date, Printers.
Shellphish
ShellPhish is a phishing tool used to phish user credentials from various social networking platforms such as Instagram, Facebook, Twitter, and LinkedIn.
Netcraft
The Netcraft anti-phishing community is a giant neighborhood watch scheme, empowering the most alert and most expert members to defend everyone within the community against phishing attacks.
Tor Browser
used to access the deep and dark web, where it acts as a default VPN for the user and bounces the network IP address through several servers before interacting with the web.
nbtstat -c
Lists the contents of the NetBIOS name cache, the table of NetBIOS names and their resolved IP addresses
nbtstat -r
Displays a count of all names resolved by a broadcast or WINS server
mbtstat -R
Purges the name cache and reloads all #PRE-tagged entries from the Lmhosts file
nbtstat -S
Lists the current NetBIOS sessions and their status with the IP addresses
Given below is the syntax of the nbtstat command.
nbtstat [-a RemoteName] [-A IP Address] [-c] [-n] [-r] [-R] [-RR] [-s] [-S] [Interval]
Which of the following Nbtstat parameters in the above syntax purges the name cache and reloads all #PRE-tagged entries from the Lmhosts file?
-R