ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 363 - PT0-002 discussion

Report
Export

A penetration tester is taking screen captures of hashes obtained from a domain controller. Which of the following best explains why the penetration tester should immediately obscure portions of the images before saving?

A.
To maintain confidentiality of data/information
Answers
A.
To maintain confidentiality of data/information
B.
To avoid disclosure of how the hashes were obtained
Answers
B.
To avoid disclosure of how the hashes were obtained
C.
To make the hashes appear shorter and easier to crack
Answers
C.
To make the hashes appear shorter and easier to crack
D.
To prevent analysis based on the type of hash
Answers
D.
To prevent analysis based on the type of hash
Suggested answer: A

Explanation:

When a penetration tester captures screen images that include hashes from a domain controller, obscuring parts of these images before saving is crucial to maintain the confidentiality of sensitive data. Hashes can be considered sensitive information as they represent a form of digital identity for users within an organization. Revealing these hashes in full could lead to unauthorized access if the hashes were to be cracked or otherwise misused by malicious actors. By partially obscuring the images, the penetration tester ensures that the data remains confidential and reduces the risk of compromising user accounts and the integrity of the organization's security posture.

asked 02/10/2024
Arushi Rastogi
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first