CREST Practitioner Security Analyst (CPSA) Practice

Disable ads (and more) with a membership for a one time $4.99 payment

Master the CREST Practitioner Security Analyst Exam. Prepare with quizzes and comprehensive study guides that include tips and explanations. Excel in your certification journey!

Practice this question and more.


Which hashing algorithm does NTLMv2 utilize for password hashing?

  1. RC4

  2. SHA-1

  3. MD5

  4. Triple DES

The correct answer is: MD5

NTLMv2 utilizes the MD5 hashing algorithm for password hashing. MD5 is a widely used cryptographic hash function that produces a 128-bit hash value, typically rendered as a 32-character hexadecimal number. In the context of NTLMv2, it securely hashes the password before it is stored or transmitted, providing a level of protection against certain types of attacks, including rainbow table attacks. While other algorithms are important in the broader context of security, they serve different functions. RC4 is a stream cipher used for encryption, which does not relate to password hashing directly. SHA-1, another hashing algorithm, is also used in various applications but is not the one employed by NTLMv2 for password hashing. Triple DES is an encryption algorithm rather than a hashing algorithm. Understanding these distinctions is crucial for recognizing how password security mechanisms like NTLMv2 operate and the importance of the hashing method chosen.