adplus-dvertising
frame-decoration

Question

What is a feature of John the Ripper, a password recovery tool commonly used by pentesters?

a.

Uses rainbow tables

b.

Supports modern Linux and Windows password hashes

c.

Relies on bruteforce mechanisms

d.

Runs on graphics processing units (GPUs)

Answer: (b).Supports modern Linux and Windows password hashes Explanation:John the Ripper supports modern Linux and Windows password hashes, making it a versatile and widely used password recovery tool by pentesters.

Engage with the Community - Add Your Comment

Confused About the Answer? Ask for Details Here.

Know the Explanation? Add it Here.

Q. What is a feature of John the Ripper, a password recovery tool commonly used by pentesters?

Similar Questions

Discover Related MCQs

Q. What is the primary purpose of interactive or online testing tools in credential testing?

Q. Which tool is described as a brute-force dictionary attack tool designed to work against various protocols and services?

Q. What is CeWL, the Custom Word List Generator, used for?

Q. What can be included in a custom wordlist for better password cracking chances?

Q. What is one of the most popular methods of remote access, providing scripting capabilities and encryption?

Q. In SSH, what command is used for remote port forwarding?

Q. Which tool is popular as a remote access tool, with a small footprint and easy portability during penetration tests?

Q. What command is used to set up a reverse shell with Netcat on Linux?

Q. Which framework makes it easy to set up remote shell access, offering both bind shells and reverse shells?

Q. What is the key concept in attacking virtual machines and containers, where compromising the underlying system allows control over many virtual machines or containers?

Q. How do containers differ from virtual machines?

Q. How can you detect if a Windows system is running in a virtual environment using the wmic command?

Q. What signs can indicate that a system is virtual when attacking virtual machines?

Q. In container attacks, what is the term for compromising the underlying system to attack the system containers are running on?

Q. What command can be used in Linux to determine the virtualization package running, specifically if the system is running system-d?

Q. Besides the system-detect-virt command, what other command in Linux can provide information about the virtualization package?

Q. How can you check if a system is being virtualized by examining disk IDs in Linux?

Q. Why are hypervisors a major target for penetration testers?

Q. What is a potential method for penetration testers to retain or obtain access by targeting virtual machine repositories?

Q. What is a challenge with virtual machine escape exploits in most virtualization environments?