Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 5Objective 2

Lateral Movement and Pivoting CPENT Practice Questions (Page 4)

Part of the Active Directory and Lateral Movement domain, which makes up ~8% of our current practice bank.

38questions here
8free pages
8concepts

Questions 16–20

  1. 16foundation · easy

    In a network with multiple segments, how does pivoting enable an attacker to access a target on a different segment?

    Select an answer first
  2. 17application · medium

    During an internal penetration test, you have compromised a domain-joined workstation and obtained the NTLM hash of a local administrator account that is also used on several servers. You need to move laterally to a target server without knowing the plaintext password. Which technique should you use?

    Select an answer first
  3. 18foundation · easy

    Which pivoting technique involves forwarding traffic from a local port on the attacker's machine to a specific port on a target system through a compromised host?

    Select an answer first
  4. 19foundation · easy

    Which pivoting technique allows an attacker to route traffic to multiple destinations through a compromised host using a dynamic proxy?

    Select an answer first
  5. 20application · medium

    You have compromised a Windows server and obtained the local administrator hash. You need to execute a command on another Windows server in the same subnet. The target has Windows Firewall enabled, but SMB (port 445) is open. Which tool would be most appropriate for executing a command remotely using the hash?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.