adplus-dvertising
frame-decoration

Question

How can SNMP be used for user enumeration?

a.

By directly querying the Active Directory

b.

By using snmpwalk with the appropriate community string

c.

By using theHarvester tool

d.

By conducting an SNMP sweep

Answer: (b).By using snmpwalk with the appropriate community string Explanation:SNMP can be used for user enumeration by using snmpwalk with the appropriate community string.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. How can SNMP be used for user enumeration?

Similar Questions

Discover Related MCQs

Q. What tool can be used to gather Samba users?

Q. How can social media mapping tools be useful for penetration testers?

Q. What is the purpose of enumerating Samba shares in penetration testing?

Q. What is the purpose of web crawling in penetration testing?

Q. What is the role of a robots.txt file in web crawling?

Q. What is web scraping in the context of penetration testing?

Q. Why do penetration testers manually inspect robots.txt files?

Q. What is a common practice for penetration testers when reviewing web links?

Q. How can Glassdoor and similar websites be useful for penetration testers?

Q. What information can be obtained through application fingerprinting in penetration testing?

Q. How does banner grabbing contribute to application fingerprinting?

Q. What role does Netcat play in banner grabbing for application fingerprinting?

Q. How can vulnerability scanners and web application security tools complement application fingerprinting?

Q. Why are exposed APIs considered valuable in penetration testing?

Q. How can Nmap be used for certificate enumeration?

Q. What information can be obtained through certificate enumeration in penetration testing?

Q. What are JSON Web Tokens (JWTs) commonly used for in web applications?

Q. Why are tokens a target for penetration testers?

Q. What is the scoping of tokens in penetration testing?

Q. Why is acquiring a token without scoping limitations a likely goal for penetration testers?