nerdexam
McAfee

MA0-150 · Question #7

A corporate user has just been hacked and shell code is installed. The user logs off, but the hacker remains on the system with NT AUTHORTTY\SYSTEM credentials. What can the attacker use to escalate…

The correct answer is B. Cached credentials. See the full explanation below for the reasoning.

Question

A corporate user has just been hacked and shell code is installed. The user logs off, but the hacker remains on the system with NT AUTHORTTY\SYSTEM credentials. What can the attacker use to escalate to the corporate user's permissions?

Options

  • AAT scheduler
  • BCached credentials
  • CLocal windows privilege escalation
  • Dpsexec

How the community answered

(26 responses)
  • A
    8% (2)
  • B
    73% (19)
  • C
    4% (1)
  • D
    15% (4)

Community Discussion

No community discussion yet for this question.

Full MA0-150 Practice