Reporting Flashcards

(12 cards)

1
Q

You have all proofs but screenshots are blurry/cropped. What’s the risk?

A

Evidence may be rejected; recapture clear screenshots showing commands + proof content.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

You forgot to include the exact exploit command flags used. How fix?

A

Re-run safely to capture exact command/output and update notes before writing report.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Your report includes massive raw outputs. What’s better?

A

Include key outputs that prove steps worked, and summarize the rest.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

You used multiple pivots but didn’t explain routing. How should you document it?

A

Add a short network diagram/table and list tunnel commands and which targets were reached.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You captured proof.txt but not local.txt (or vice versa). What happens?

A

You may lose points because objectives often require specific proof files; capture required proofs per target.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

You mixed steps from two machines in one section. Why is this bad?

A

It breaks replication and grading order; separate per target with clear transitions.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You pasted unmodified exploit code pages into PDF. What’s the correction?

A

Replace with exploit URL and keep only modified code sections (with explanations).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Your screenshots show proof but not the command that printed it. Is that enough?

A

Often not; capture cat/type output in the screenshot to show interactive shell proof.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You used a web shell to read proof quickly. What’s the scoring issue?

A

Proof must be obtained and displayed via interactive shell; web shells can be zero points.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

You ended the exam and started writing report hours later with missing notes. What’s the lesson?

A

Write notes continuously; capture outputs/screenshots immediately while context is fresh.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Your report is not in PDF. What happens?

A

Submission may be rejected or considered non-compliant; convert to PDF as required.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

You documented attacks but not how you confirmed admin/root. What should be included?

A

Commands showing privilege context (whoami/id) and proof evidence for each target.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly