nerdexam
CompTIA

PT0-003 · Question #194

During an internal penetration test, a tester compromises a Windows OS-based endpoint and bypasses the defensive mechanisms. The tester also discovers that the endpoint is part of an Active Directory

Sign in or unlock PT0-003 to reveal the answer and full explanation for question #194. The question stem and answer options stay visible for context.

Submitted by parkjh· Mar 6, 2026Post-exploitation and Lateral Movement

Question

During an internal penetration test, a tester compromises a Windows OS-based endpoint and bypasses the defensive mechanisms. The tester also discovers that the endpoint is part of an Active Directory (AD) local domain. The tester's main goal is to leverage credentials to authenticate into other systems within the Active Directory environment. Which of the following steps should the tester take to complete the goal?

Options

  • AUse Mimikatz to collect information about the accounts and try to authenticate in other systems
  • BUse Hashcat to crack a password for the local user on the compromised endpoint
  • CUse Evil-WinRM to access other systems in the network within the endpoint credentials
  • DUse Metasploit to create and execute a payload and try to upload the payload into other systems

Unlock PT0-003 to see the answer

You've previewed enough free PT0-003 questions. Unlock PT0-003 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Active Directory exploitation#Credential dumping#Mimikatz#Lateral movement
Full PT0-003 Practice