ExamGecko
Question list
Search
Search

Related questions

Question 366 - CISA discussion

Report
Export

Which of the following is the BEST control lo mitigate attacks that redirect Internet traffic to an unauthorized website?

A.
Utilize a network-based firewall.
Answers
A.
Utilize a network-based firewall.
B.
Conduct regular user security awareness training.
Answers
B.
Conduct regular user security awareness training.
C.
Perform domain name system (DNS) server security hardening.
Answers
C.
Perform domain name system (DNS) server security hardening.
D.
Enforce a strong password policy meeting complexity requirement.
Answers
D.
Enforce a strong password policy meeting complexity requirement.
Suggested answer: C

Explanation:

The best control to mitigate attacks that redirect Internet traffic to an unauthorized website is to perform domain name system (DNS) server security hardening.DNS servers are responsible for resolving domain names into IP addresses, and they are often targeted by attackers who want to manipulate or spoof DNS records to redirect users to malicious websites4. By applying security best practices to DNS servers, such as encrypting DNS traffic, implementing DNSSEC, restricting access and updating patches, the organization can reduce the risk of DNS hijacking attacks. A network-based firewall, user security awareness training and a strong password policy are also important controls, but they are not as effective as DNS server security hardening in preventing this specific type of attack.Reference:

CISA Review Manual, 27th Edition, page 4021

CISA Review Questions, Answers & Explanations Database - 12 Month Subscription

asked 18/09/2024
Alexander Yakovenko
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first