100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached
logo-home
CHFI Chapter 5-6 Questions and Answers 100% Solved $12.99   Add to cart

Exam (elaborations)

CHFI Chapter 5-6 Questions and Answers 100% Solved

 1 view  0 purchase
  • Course
  • CHFI
  • Institution
  • CHFI

CHFI Chapter 5-6 Questions and Answers 100% Solved

Preview 2 out of 13  pages

  • October 22, 2024
  • 13
  • 2024/2025
  • Exam (elaborations)
  • Questions & answers
  • CHFI
  • CHFI
avatar-seller
TheeGrades
CHFI Chapter 5-6 Questions and
Answers 100% Solved

Syllable Attack - ✔✔the combination of both a brute force attack and a dictionary attack. This is
often used when the password is a nonexistent word. The attacker takes syllables from dictionary
words and combines them in every possible way to try to crack the password




Rule-Based Attack - ✔✔This type of attack is used when an attacker already has some
information about the password. He or she can then write a rule so that the password-cracking
software will generate only passwords that meet this rule. For example, if the attacker knows that
all passwords on a system consist of six letters and three numbers, he or she can craft a rule that
generates only these types of passwords. This is considered the most powerful attack




Hybrid Attack - ✔✔This type of attack is based on the dictionary attack and brute force. Often,
people change their passwords by just adding numbers to their old passwords. In this attack, the
program adds numbers and symbols to the words from the dictionary. For example, if the old
password is "system", the user may have changed it to "system1" or "system2."


Password Guessing - ✔✔Sometimes users set passwords that can be easily remembered, such as
a relative's name, a pet's name, or an automobile license plate number. This can make the
password easily guessed. Unlike other methods of password cracking, guessing requires only
physical access or an open network path to a machine running a suitable service




Rainbow Attack - ✔✔a password hash table called a rainbow table is created in advance and
stored into memory. This rainbow table is a table of password hashes created by hashing every
possible password and variation thereof to be used in a rainbow attack to recover a plaintext
password from a captured ciphertext

, L0phtCrack - ✔✔Helps to recover lost Microsoft Windows passwords by using dictionary
attacks, hybrid attacks, rainbow tables, and brute-force attacks




Ophcrack - ✔✔A Windows password cracker based on rainbow tables. GUI and runs on multiple
platforms




Cain & Abel - ✔✔Is a password recovery tool for Microsoft OS's. It sniffs the network, cracks
encrypted passwords using dictionary, brute-force, and cryptanalysis attacks. It covers some
security aspects/weaknesses present in a protocol's standards, caching mechanisms, and
authentication methods. This offers a simplified recovery of passwords and credentials from
various sources. It consists of an Arp Poison Routing (APR) that enables sniffing on switched
LANs and man-in-the-middle attacks. The sniffer in this tool is also capable of analyzing
encrypted protocols, such as HTTP and SSH-1, and contains filters to capture credentials from a
wide range of authentication mechanisms




RainbowCrack - ✔✔A hash cracker. It uses a time-memory tradeoff algorithm to crack hashes. It
pre-computes all possible plaintext- ciphertext pairs in advance and stores them in the "rainbow
table" file


PWdump7 - ✔✔An application that dumps the password hashes (OWFs) from NT's SAM
database. It extracts LM and NTLM password hashes of local user accounts from the SAM
database




Fgdump - ✔✔Basically, a utility for dumping passwords on Windows NT/2000/XP/2003/Vista
machines

The benefits of buying summaries with Stuvia:

Guaranteed quality through customer reviews

Guaranteed quality through customer reviews

Stuvia customers have reviewed more than 700,000 summaries. This how you know that you are buying the best documents.

Quick and easy check-out

Quick and easy check-out

You can quickly pay through credit card or Stuvia-credit for the summaries. There is no membership needed.

Focus on what matters

Focus on what matters

Your fellow students write the study notes themselves, which is why the documents are always reliable and up-to-date. This ensures you quickly get to the core!

Frequently asked questions

What do I get when I buy this document?

You get a PDF, available immediately after your purchase. The purchased document is accessible anytime, anywhere and indefinitely through your profile.

Satisfaction guarantee: how does it work?

Our satisfaction guarantee ensures that you always find a study document that suits you well. You fill out a form, and our customer service team takes care of the rest.

Who am I buying these notes from?

Stuvia is a marketplace, so you are not buying this document from us, but from seller TheeGrades. Stuvia facilitates payment to the seller.

Will I be stuck with a subscription?

No, you only buy these notes for $12.99. You're not tied to anything after your purchase.

Can Stuvia be trusted?

4.6 stars on Google & Trustpilot (+1000 reviews)

83637 documents were sold in the last 30 days

Founded in 2010, the go-to place to buy study notes for 14 years now

Start selling
$12.99
  • (0)
  Add to cart