Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 157 Topic 16 Discussion

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 157 Topic 16 Discussion

312-50v13 Exam Topic 16 Question 157 Discussion:
Question #: 157
Topic #: 16

During a high-stakes engagement, a penetration tester abuses MS-EFSRPC to force a domain controller to authenticate to an attacker-controlled server. The tester captures the NTLM hash and relays it to AD CS to obtain a certificate granting domain admin privileges. Which network-level hijacking technique is illustrated?


A.

Hijacking sessions using a PetitPotam relay attack


B.

Exploiting vulnerabilities in TLS compression via a CRIME attack


C.

Stealing session tokens using browser-based exploits


D.

Employing a session donation method to transfer tokens


Get Premium 312-50v13 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.