exam questions

Exam PT0-002 All Questions

View all questions & answers for the PT0-002 exam

Exam PT0-002 topic 1 question 378 discussion

Actual exam question from CompTIA's PT0-002
Question #: 378
Topic #: 1
[All PT0-002 Questions]

A penetration tester gained access to one of the target company's servers. During the enumeration phase, the penetration tester lists the bash history and observes the following row:

curl -k 'imaps://10.12.14.121' --user jsmith:Blu3moon -v

Which of the following steps should the penetration tester take next?

  • A. Brute force all mail users.
  • B. Enumerate mall server users.
  • C. Attempt to read email.
  • D. Download hashes.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
BlackSkullz
5 months, 3 weeks ago
Selected Answer: C
Based on the syntax, the user logged into a mail server (-k means connection without SSL/TLS validation) and retreived their mail via the IMAPS port . If the tester recreates this syntax, they can read that user's emails and gather any extra info for further exploitation
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago