Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 5Objective 2

Lateral Movement and Pivoting CPENT Practice Questions (Page 5)

Part of the Active Directory and Lateral Movement domain, which makes up ~8% of our current practice bank.

38questions here
8free pages
8concepts

Questions 21–25

  1. 21foundation · easy

    Which lateral movement technique involves using a Kerberos ticket to authenticate to remote systems?

    Select an answer first
  2. 22foundation · easy

    What is the primary purpose of pivoting in a penetration test?

    Select an answer first
  3. 23foundation · easy

    Which lateral movement technique uses a user's password hash to authenticate to remote systems without knowing the plaintext password?

    Select an answer first
  4. 24application · medium

    You are performing lateral movement in a high-security environment. The SOC uses UEBA to detect anomalous logon patterns, including unusual source hosts and times. You have valid credentials for a standard user. Which action best minimizes your footprint and reduces the chance of UEBA alerts?

    Select an answer first
  5. 25application · hard

    During a penetration test, you have obtained the NTLM hash of a domain admin account. You need to move laterally to a domain controller to complete the objective. The security team has enabled logging for account logon events and is actively monitoring for suspicious activity. Which technique would be least likely to trigger an alert for a new logon?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.