adplus-dvertising
frame-decoration

Question

How might penetration testers acquire fingerprints for biometric authentication exploitation?

a.

Mold the fingerprint and create a cast model

b.

Capture a picture of the fingerprint

c.

Use complex optical scanners

d.

Pretexting to acquire fingerprint samples

Answer: (b).Capture a picture of the fingerprint Explanation:Penetration testers can acquire fingerprints by capturing a picture of the fingerprint, ranging from simple solutions to complex methods like molding and creating a cast model.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. How might penetration testers acquire fingerprints for biometric authentication exploitation?

Similar Questions

Discover Related MCQs

Q. What should penetration testers focus on when encountering a biometric system?

Q. What is a common method for offline password cracking that uses pre-computed tables?

Q. Which password-cracking utility uses graphics processing units (GPUs) for high-speed cracking?

Q. What is a feature of John the Ripper, a password recovery tool commonly used by pentesters?

Q. What is the primary purpose of interactive or online testing tools in credential testing?

Q. Which tool is described as a brute-force dictionary attack tool designed to work against various protocols and services?

Q. What is CeWL, the Custom Word List Generator, used for?

Q. What can be included in a custom wordlist for better password cracking chances?

Q. What is one of the most popular methods of remote access, providing scripting capabilities and encryption?

Q. In SSH, what command is used for remote port forwarding?

Q. Which tool is popular as a remote access tool, with a small footprint and easy portability during penetration tests?

Q. What command is used to set up a reverse shell with Netcat on Linux?

Q. Which framework makes it easy to set up remote shell access, offering both bind shells and reverse shells?

Q. What is the key concept in attacking virtual machines and containers, where compromising the underlying system allows control over many virtual machines or containers?

Q. How do containers differ from virtual machines?

Q. How can you detect if a Windows system is running in a virtual environment using the wmic command?

Q. What signs can indicate that a system is virtual when attacking virtual machines?

Q. In container attacks, what is the term for compromising the underlying system to attack the system containers are running on?

Q. What command can be used in Linux to determine the virtualization package running, specifically if the system is running system-d?

Q. Besides the system-detect-virt command, what other command in Linux can provide information about the virtualization package?