Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GAQM Exam CPEH-001 Topic 1 Question 67 Discussion

Actual exam question for GAQM's CPEH-001 exam
Question #: 67
Topic #: 1
[All CPEH-001 Questions]

An NMAP scan of a server shows port 25is open. What risk could this pose?

Show Suggested Answer Hide Answer
Suggested Answer: D

ADMmutate is using a polymorphic technique designed to circumvent certain forms of signature based intrusion detection. All network based remote buffer overflow exploits have similarities in how they function. ADMmutate has the ability to emulate the protocol of the service the attacker is attempting to exploit. The data payload (sometimes referred to as an egg) contains the instructions the attacker wants to execute on the target machine. These eggs are generally interchangeable and can be utilized in many different buffer overflow exploits. ADMmutate uses several techniques to randomize the contents of the egg in any given buffer overflow exploit. This randomization effectively changes the content or 'signature' of the exploit without changing the functionality of the exploit.


Contribute your Thoughts:

Valentin
1 days ago
Port 25 being open could mean active mail relay.
upvoted 0 times
...

Save Cancel