[Attacks and Exploits]
A penetration tester is evaluating a SCADA system. The tester receives local access to a workstation that is running a single application. While navigating through the application, the tester opens a terminal window and gains access to the underlying operating system. Which of the following attacks is the tester performing?
A kiosk escape involves breaking out of a restricted environment, such as a kiosk or a single application interface, to access the underlying operating system. Here's why option A is correct:
Kiosk Escape: This attack targets environments where user access is intentionally limited, such as a kiosk or a dedicated application. The goal is to break out of these restrictions and gain access to the full operating system.
Arbitrary Code Execution: This involves running unauthorized code on the system, but the scenario described is more about escaping a restricted environment.
Process Hollowing: This technique involves injecting code into a legitimate process, making it appear benign while executing malicious activities.
Library Injection: This involves injecting malicious code into a running process by loading a malicious library, which is not the focus in this scenario.
Reference from Pentest:
Forge HTB: Demonstrates techniques to escape restricted environments and gain broader access to the system.
Horizontall HTB: Shows methods to break out of limited access environments, aligning with the concept of kiosk escape.
Conclusion:
Option A, Kiosk escape, accurately describes the type of attack where a tester breaks out of a restricted environment to access the underlying operating system.
Narcisa
1 day agoJesusita
7 days agoThaddeus
12 days agoMargret
17 days agoPrecious
22 days agoCorinne
27 days agoCorinne
2 months agoLelia
2 months agoKristin
2 months agoReta
2 months agoWhitley
2 months agoYen
2 months agoRickie
3 months agoPearlie
3 months agoIlene
3 months agoJulie
3 months agoSalena
3 months agoMarta
3 months agoFarrah
4 months agoInes
4 months agoCorinne
5 months agoKeith
5 months agoJani
4 months agoSkye
4 months agoFallon
4 months ago