GPEN › Attacking Password Hashes
This domain covers extracting and cracking Windows credential material: NTLM and NTLMv2 hashes, LSASS and SAM dumps, and offline attacks with Hashcat and John the Ripper. GPEN questions present a capture or dump scenario and ask which technique, tool, or cracking mode is correct for recovering plaintext or abusing the hash.
GPEN Attacking Password Hashes — All 33 Questions
Every question in this domain with answers and detailed explanations.
Password Attacks and Formats
Scanning and Host Discovery
Metasploit
Vulnerability Scanning
Kerberos Attacks
Reconnaissance
Command and Control
Exploitation Fundamentals
Azure AD Integration
Domain Escalation and Persistence
Azure Apps and Attacks
Escalation and Exploitation
Advanced Password Attacks
Pen Test Planning