PT0-003 · Question #140
Which of the following protocols would a penetration tester most likely utilize to exfiltrate data covertly and evade detection?
The correct answer is D. DNS. DNS (Domain Name System) is often used for data exfiltration because it is a fundamental protocol that is usually allowed through firewalls and not scrutinized as heavily as others. By embedding data into DNS queries and responses, attackers can stealthily transmit information…
Question
Which of the following protocols would a penetration tester most likely utilize to exfiltrate data covertly and evade detection?
Options
- AFTP
- BHTTPS
- CSMTP
- DDNS
How the community answered
(25 responses)- A8% (2)
- B4% (1)
- D88% (22)
Explanation
DNS (Domain Name System) is often used for data exfiltration because it is a fundamental protocol that is usually allowed through firewalls and not scrutinized as heavily as others. By embedding data into DNS queries and responses, attackers can stealthily transmit information without raising immediate suspicion.
Topics
Community Discussion
No community discussion yet for this question.