312-50v13 Exam Question 66

During a stealth assessment, an attacker exploits intermittent delays in ARP responses from a target system.
By injecting fake ARP replies before legitimate ones, the attacker temporarily redirects traffic to their own device, allowing intermittent packet capture. What type of sniffing attack is occurring?
  • 312-50v13 Exam Question 67

    You are Sameer Das, an ethical hacker hired by a national utilities provider to assess the resilience of its power grid infrastructure. During your red team operation, you conduct a phishing campaign targeting field engineers and successfully gain access to the internal OT network. From there, you identify unsecured access to the substation's programmable controllers and replace one of the system's firmware components with a custom payload. This payload silently processes your commands while maintaining access across reboots.
    Based on this action, which type of IoT OT threat are you simulating?
  • 312-50v13 Exam Question 68

    A penetration tester is running a vulnerability scan on a company's network. The scan identifies an open port with a high-severity vulnerability linked to outdated software. What is the most appropriate next step for the tester?
  • 312-50v13 Exam Question 69

    A future-focused security audit discusses risks where attackers collect encrypted data now, anticipating that they can decrypt it later with quantum computers. What is this threat known as?
  • 312-50v13 Exam Question 70

    During an internal assessment, a penetration tester gains access to a hash dump containing NTLM password hashes from a compromised Windows system. To crack the passwords efficiently, the tester uses a high- performance CPU setup with Hashcat, attempting millions of password combinations per second. Which technique is being optimized in this scenario?