McAfee
MA0-150 · Question #7
A corporate user has just been hacked and shell code is installed. The user logs off, but the hacker remains on the system with NT AUTHORTTY\SYSTEM credentials. What can the attacker use to escalate…
The correct answer is B. Cached credentials. See the full explanation below for the reasoning.
Question
A corporate user has just been hacked and shell code is installed. The user logs off, but the hacker remains on the system with NT AUTHORTTY\SYSTEM credentials. What can the attacker use to escalate to the corporate user's permissions?
Options
- AAT scheduler
- BCached credentials
- CLocal windows privilege escalation
- Dpsexec
How the community answered
(26 responses)- A8% (2)
- B73% (19)
- C4% (1)
- D15% (4)
Community Discussion
No community discussion yet for this question.