nerdexam
EC-Council

EC0-350 · Question #790

John has a proxy server on his network which caches and filters web access. He shuts down all unnecessary ports and services. Additionally, he has installed a firewall (Cisco PIX) that will not…

The correct answer is D. Use HTTPTunnel or Stunnel on port 80 and 443. See the full explanation below for the reasoning.

Question

John has a proxy server on his network which caches and filters web access. He shuts down all unnecessary ports and services. Additionally, he has installed a firewall (Cisco PIX) that will not allow users to connect to any outbound ports. Jack, a network user has successfully connected to a remote server on port 80 using netcat. He could in turn drop a shell from the remote machine. Assuming an attacker wants to penetrate John's network, which of the following options is he likely to choose?

Options

  • AUse ClosedVPN
  • BUse Monkey shell
  • CUse reverse shell using FTP protocol
  • DUse HTTPTunnel or Stunnel on port 80 and 443

How the community answered

(45 responses)
  • A
    2% (1)
  • B
    11% (5)
  • C
    4% (2)
  • D
    82% (37)

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice