A compromised host is being used to reach parts of the network not directly reachable from the initial position. Which description BEST captures this approach?

Prepare for the Penetration Testing and Vulnerability Analysis Test with a range of challenging questions. Study with multiple choice format, hints, and detailed explanations to ace your next exam!

Multiple Choice

A compromised host is being used to reach parts of the network not directly reachable from the initial position. Which description BEST captures this approach?

Explanation:
Pivoting is the technique of using a compromised host as a relay to reach parts of the network that aren't directly reachable from the attacker's initial position. By treating the foothold as a jump box, traffic and access are routed through that host to access internal subnets, services, or devices behind firewalls or segmentation. This directly matches the scenario where the compromised machine becomes the gateway to otherwise unreachable areas, enabling lateral movement across the network. External recon focuses on the perimeter and doesn't involve moving deeper into internal networks. Escalating privileges on the local machine moves within that host but doesn’t inherently describe crossing into other subnets. Biometric access is unrelated to how access within the network is traversed.

Pivoting is the technique of using a compromised host as a relay to reach parts of the network that aren't directly reachable from the attacker's initial position. By treating the foothold as a jump box, traffic and access are routed through that host to access internal subnets, services, or devices behind firewalls or segmentation. This directly matches the scenario where the compromised machine becomes the gateway to otherwise unreachable areas, enabling lateral movement across the network.

External recon focuses on the perimeter and doesn't involve moving deeper into internal networks. Escalating privileges on the local machine moves within that host but doesn’t inherently describe crossing into other subnets. Biometric access is unrelated to how access within the network is traversed.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy