Which of the following post-exploitation activities allows a penetration tester to maintain persistent access in a compromised system?
Maintaining persistent access in a compromised system is a crucial goal for a penetration tester after achieving initial access. Here's an explanation of each option and why creating registry keys is the preferred method:
Creating registry keys (Answer: A):
Advantages: This method is stealthy and can be effective in maintaining access over long periods, especially on Windows systems.
Example: Adding a new entry to the HKLMSoftwareMicrosoftWindowsCurrentVersionRun registry key to execute a malicious script upon system boot.
Drawbacks: This method is less stealthy and can be easily detected by network monitoring tools. It also requires an open port, which might be closed or filtered by firewalls.
Executing a process injection (Option C):
Drawbacks: While effective for evading detection, it doesn't inherently provide persistence. The injected code will typically be lost when the process terminates or the system reboots.
Setting up a reverse SSH connection (Option D):
Drawbacks: This method can be useful for maintaining a session but is less reliable for long-term persistence. It can be disrupted by network changes or monitoring tools.
Conclusion: Creating registry keys is the most effective method for maintaining persistent access in a compromised system, particularly in Windows environments, due to its stealthiness and reliability.
Installing a bind shell (Option B):
Bette
6 months agoLindsay
6 months agoAlbert
6 months agoLouann
7 months agoKaycee
7 months agoAriel
7 months agoAnnalee
7 months agoPhyliss
7 months agoAlpha
8 months agoAfton
8 months agoStevie
8 months agoDorcas
8 months agoMari
8 months agoBen
8 months agoBarb
8 months agoHannah
2 years agoJuan
2 years agoIvette
1 year agoVeronika
1 year agoIra
2 years agoCarrol
2 years agoStaci
2 years agoViva
2 years agoNicolette
2 years agoBuffy
2 years agoSoledad
2 years agoPhuong
2 years agoDorothy
2 years agoLucina
2 years agoTula
2 years agoLilli
2 years agoGregoria
2 years agoTien
2 years agoLayla
2 years agoFrancine
2 years agoLeontine
2 years agoDean
2 years agoJudy
2 years agoArlyne
2 years agoStefania
2 years agoStefania
2 years agoMagnolia
2 years agoJosephine
2 years agoMertie
2 years agoKenneth
2 years agoEdmond
2 years agoKing
2 years agoLavina
2 years ago