Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 5Objective 1

Active Directory Penetration Testing CPENT Practice Questions (Page 7)

Part of the Active Directory and Lateral Movement domain, which makes up ~8% of our current practice bank.

34questions here
7free pages
8concepts

Questions 31–34

  1. 31application · medium

    During an assessment, you find that a domain user 'jsmith' has 'GenericAll' permission on the group 'IT_Admins'. The group 'IT_Admins' is a member of 'Domain Admins'. What is the most direct way to escalate to domain admin privileges?

    Select an answer first
  2. 32expert · hard

    You have compromised a server with unconstrained delegation. You need to escalate to Domain Admin, but the domain admin rarely authenticates to this server. You have the ability to coerce authentication from a domain admin using a known vulnerability. Which technique best combines coercion and delegation to achieve DA?

    Select an answer first
  3. 33foundation · easy

    What is the primary purpose of the adminSDHolder object in Active Directory?

    Select an answer first
  4. 34application · medium

    You are performing lateral movement and want to avoid triggering Windows Defender or other EDR on the target. Which approach is most likely to evade detection?

    Select an answer first
Finished these 4 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to CPENT

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.