Giac Study Set 2 2025 Questions and
Answers
A penetration tester configured a Metasploit module with the settings shown
below.
What type of attack is this?
Name
Required
RHOST
RPORT
SHARE
Current Setting
192.168.4.24
445
ADMIN$
yes
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 1
,yes
no
SMBDomain WORKGROUP
SMBPass
CBC67974B2A219DIAAD3B414B51404EE:363DD639AD34B6C5153COF5T16
5AB74E
no
SMBUser
Administrator
no - ANSWER-pass the hash
A penetration tester is performing a vulnerability scan on a Linux host and sees
that
the scanner reports an application as a vulnerable version. What is the next step the
tester should take to verify the vulnerability is a true positive? - ANSWER-Review
the application's patch list to see if the vulnerability is addressed
What is required to create a Kerberos Golden Ticket using Mimikatz? - ANSWER-
NT hash of the krbtgt account
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 2
, A penetration tester has a list of URLs that they would like to evaluate for the use
of
default credentials. What tool can use the list of URLs and provide the tester with
information on where default credentials are in use? - ANSWER-EyeWitness
What defense against Kerberos attacks can only be enabled in versions of
Windows
Enterprise since Windows 10? - ANSWER-Deploy CredentialGuard throughout
the environment
Based on the image below, what is the pen tester configuring as part of an MSF
pivot? - ANSWER-SSH local port forward
You've been contracted by the owner of a secure facility to try and break into their
office in the middle Of the night. Your client requested photographs Of any
sensitive
information found as proof of your accomplishments. The job you've been hired
to
perform is an example Of What practice? - ANSWER-Penetration Testing
When account lockout functionality is in use, which of the following can result in a
denial-of-service attack? - ANSWER-Password guessing
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 3
Answers
A penetration tester configured a Metasploit module with the settings shown
below.
What type of attack is this?
Name
Required
RHOST
RPORT
SHARE
Current Setting
192.168.4.24
445
ADMIN$
yes
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 1
,yes
no
SMBDomain WORKGROUP
SMBPass
CBC67974B2A219DIAAD3B414B51404EE:363DD639AD34B6C5153COF5T16
5AB74E
no
SMBUser
Administrator
no - ANSWER-pass the hash
A penetration tester is performing a vulnerability scan on a Linux host and sees
that
the scanner reports an application as a vulnerable version. What is the next step the
tester should take to verify the vulnerability is a true positive? - ANSWER-Review
the application's patch list to see if the vulnerability is addressed
What is required to create a Kerberos Golden Ticket using Mimikatz? - ANSWER-
NT hash of the krbtgt account
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 2
, A penetration tester has a list of URLs that they would like to evaluate for the use
of
default credentials. What tool can use the list of URLs and provide the tester with
information on where default credentials are in use? - ANSWER-EyeWitness
What defense against Kerberos attacks can only be enabled in versions of
Windows
Enterprise since Windows 10? - ANSWER-Deploy CredentialGuard throughout
the environment
Based on the image below, what is the pen tester configuring as part of an MSF
pivot? - ANSWER-SSH local port forward
You've been contracted by the owner of a secure facility to try and break into their
office in the middle Of the night. Your client requested photographs Of any
sensitive
information found as proof of your accomplishments. The job you've been hired
to
perform is an example Of What practice? - ANSWER-Penetration Testing
When account lockout functionality is in use, which of the following can result in a
denial-of-service attack? - ANSWER-Password guessing
....COPYRIGHT ©️ 2025 ALL RIGHTS RESERVED...TRUSTED & VERIFIED 3