ExamGecko
Question list
Search
Search

Related questions











Question 323 - 200-201 discussion

Report
Export

Which type of attack uses a botnet to reflect requests off of an NTP server to overwhelm a target?

A.

Display

Answers
A.

Display

B.

Man-in-the-middle

Answers
B.

Man-in-the-middle

C.

Distributed denial of service

Answers
C.

Distributed denial of service

D.

Denial of service

Answers
D.

Denial of service

Suggested answer: C

Explanation:

A Distributed Denial of Service (DDoS) attack involves multiple compromised devices (botnet) sending a large number of requests to a target server to overwhelm it.

In a specific type of DDoS attack known as an NTP amplification attack, the attacker exploits the Network Time Protocol (NTP) servers by sending small queries with a spoofed source IP address (the target's IP).

The NTP server responds with a much larger reply to the target's IP address, thereby amplifying the traffic directed at the target.

This reflection and amplification technique significantly increases the volume of traffic sent to the target, causing denial of service.

OWASP DDoS Attack Overview

NTP Amplification Attack Explained

Understanding Botnets and Distributed Attacks

asked 07/10/2024
Mohand TIMSILINE
41 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first