PT0-003 · Question #150
During a security assessment, a penetration tester uses a tool to capture plaintext log-in credentials on the communication between a user and an authentication system. The tester wants to use this…
The correct answer is B. Wireshark. Wireshark is a powerful network packet capture and analysis tool used for inspecting network traffic. If authentication credentials are transmitted in plaintext (e.g., HTTP, FTP, Telnet), Wireshark can capture and display these credentials for further use in unauthorized access
Question
During a security assessment, a penetration tester uses a tool to capture plaintext log-in credentials on the communication between a user and an authentication system. The tester wants to use this information for further unauthorized access. Which of the following tools is the tester using?
Options
- ABurp Suite
- BWireshark
- CZed Attack Proxy
- DMetasploit
How the community answered
(51 responses)- A8% (4)
- B86% (44)
- C2% (1)
- D4% (2)
Explanation
Wireshark is a powerful network packet capture and analysis tool used for inspecting network traffic. If authentication credentials are transmitted in plaintext (e.g., HTTP, FTP, Telnet), Wireshark can capture and display these credentials for further use in unauthorized access
Topics
Community Discussion
No community discussion yet for this question.