A penetration tester ran an Nmap scan against a target and received the following output: Which of the following commands would be best for the penetration tester to execute NEXT to discover any weaknesses or vulnerabilities?
A.
onesixtyone ג€"d 192.168.121.1
B.
enum4linux ג€"w 192.168.121.1
C.
snmpwalk ג€"c public 192.168.121.1
D.
medusa ג€"h 192.168.121.1 ג€"U users.txt ג€"P passwords.txt ג€"M ssh
I'm going with B as well. Reasons are:
1. snmpwalk uses UDP port 161 (SNMP) which isn't listed
2. onesityone another SNMP attack that uses port 161
3. medusa is a brute force tool.
enum4linux - SMB enumeration tool uses ports 445 and 139 (both listed as opened)
enum4linux work also on linux machine.
Enum4linux is an enumeration tool capable of detecting and extracting data from Windows and Linux operating systems, including those that are Samba (SMB) hosts on a network.
Agreed B enum4linux just not 100% sure on ip addy in place of the workgroup with that -w flag. But as far as I know no SNMP 161 open cant use A or C then.
Discovering any weaknesses or vulnerabilities should be enum4linux.
This can still be used among windows machines to evaluate vulnerabilities
upvoted 2 times
...
This section is not available anymore. Please use the main Exam Page.PT0-001 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
catastrophie
Highly Voted 3 years, 11 months agomiabe
Most Recent 2 years, 10 months agot_bob
3 years, 1 month agocasandre123
3 years, 7 months agoZdanypentest
3 years, 3 months agocuernov
3 years, 1 month agoMrRiver
3 years, 8 months agoCybeSecN
3 years, 9 months agocarlo479
3 years, 10 months agox0hmei
3 years, 11 months agohellobob
3 years, 12 months agohellobob
3 years, 12 months ago