GCIH › Attacking Passwords
This GCIH domain covers credential theft and offline cracking on Windows and Linux targets. You must recognize Mimikatz modules, LSASS and NTDS.dit dumping, NTLM relay, and hashcat/John usage, then map observed artifacts and sub-status codes to the correct attack technique during incident response.
GCIH Attacking Passwords — All 30 Questions
Every question in this domain with answers and detailed explanations.
Securing Credentials and Data in Cloud
Endpoint Attack and Pivoting
SMB Security
Malware and AI-Assisted Investigations
Understanding Passwords
Detecting Exploitation and Covert Communication Tools
Detecting Evasive and Post-Exploitation Techniques
Integrating LLMs with Offensive Operations
Network and Log Investigations
Exploiting Insecure Web App References
Web App API Attacks
Web App Injection Attacks
Incident Response and Cyber Investigation
Scanning and Mapping