In Windows networking, a null session is established by which method?

Study for the EC-Council Certified Ethical Hacker (CEH) v13 Exam. Utilize flashcards and multiple-choice questions with helpful hints and detailed explanations. Excel in your exam preparation!

Multiple Choice

In Windows networking, a null session is established by which method?

Explanation:
Null sessions are unauthenticated connections to Windows resources. They occur when a client connects without supplying any user name or password, effectively doing an anonymous login. This type of session historically allowed access to certain IPC shares and enabled enumeration of what a target exposes, which is why it’s described as a session established with no credentials. The correct approach here is connecting with no credentials, i.e., a null session. Using a standard user account, a guest account with a password, or authenticating with administrator credentials all involve providing credentials and create authenticated sessions, not null (anonymous) ones.

Null sessions are unauthenticated connections to Windows resources. They occur when a client connects without supplying any user name or password, effectively doing an anonymous login. This type of session historically allowed access to certain IPC shares and enabled enumeration of what a target exposes, which is why it’s described as a session established with no credentials. The correct approach here is connecting with no credentials, i.e., a null session.

Using a standard user account, a guest account with a password, or authenticating with administrator credentials all involve providing credentials and create authenticated sessions, not null (anonymous) ones.

Subscribe

Get the latest from Passetra

You can unsubscribe at any time. Read our privacy policy