Which Windows-based, free-to-download tool focused on password cracking with sniffers and ARP cache poisoning tools is described in the material?

Study for the SANS560 GIAC Penetration Tester (GPEN) Test. Study with flashcards and multiple choice questions, each question has hints and explanations. Get ready for your exam!

Multiple Choice

Which Windows-based, free-to-download tool focused on password cracking with sniffers and ARP cache poisoning tools is described in the material?

Explanation:
This item tests recognition of a Windows-based, free tool that combines password cracking with network sniffing capabilities and ARP cache poisoning for credential capture. Cain (often called Cain and Abel) is a Windows tool freely available that specializes in password recovery and cracking, and it includes built-in sniffing features along with the ability to perform ARP poisoning to place the attacker on the LAN for intercepting credentials. The other options serve different primary roles: Nmap is a network scanner, Wireshark is a packet analyzer, and Metasploit is an exploitation framework. They don’t focus on password cracking together with ARP-based MITM on Windows, so Cain is the best match for the described description.

This item tests recognition of a Windows-based, free tool that combines password cracking with network sniffing capabilities and ARP cache poisoning for credential capture. Cain (often called Cain and Abel) is a Windows tool freely available that specializes in password recovery and cracking, and it includes built-in sniffing features along with the ability to perform ARP poisoning to place the attacker on the LAN for intercepting credentials. The other options serve different primary roles: Nmap is a network scanner, Wireshark is a packet analyzer, and Metasploit is an exploitation framework. They don’t focus on password cracking together with ARP-based MITM on Windows, so Cain is the best match for the described description.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy