Network Exploitation

← all quizzes

Answer all 15 questions, then submit. You need 75% to pass. If you don't pass, the reattempt unlocks after 24 hours.

Q1. `ssh -L 8080:10.0.0.5:80 user@pivot` is:
Q2. `-Pn` tells nmap to:
Q3. BlueKeep (CVE-2019-0708) is a wormable RCE vulnerability in:
Q4. `nmap -D` decoys and packet fragmentation are used to:
Q5. Which set of legacy protocols exposes credentials in cleartext to a sniffer?
Q6. Hydra is typically used to:
Q7. ARP spoofing on a LAN primarily enables:
Q8. An NFS export with 'no_root_squash' is dangerous because a remote root user can:
Q9. enum4linux or a null SMB session is used to:
Q10. A classic default SNMP community string to try first is:
Q11. SMTP VRFY and EXPN commands can be abused to:
Q12. A misconfigured DNS server allowing a zone transfer (AXFR) lets an attacker:
Q13. proxychains is used together with a SOCKS proxy to:
Q14. Tools like chisel and ligolo-ng are used to:
Q15. In Metasploit, `autoroute` (with a Meterpreter session) is used to: