ExamGecko
Home Home / ISC / CCSP
Question list
Search
Search

Question 271 - CCSP discussion

Report
Export

DNSSEC was designed to add a layer of security to the DNS protocol.

Which type of attack was the DNSSEC extension designed to mitigate?

A.
Account hijacking
Answers
A.
Account hijacking
B.
Snooping
Answers
B.
Snooping
C.
Spoofing
Answers
C.
Spoofing
D.
Data exposure
Answers
D.
Data exposure
Suggested answer: C

Explanation:

DNSSEC is an extension to the regular DNS protocol that utilizes digital signing of DNS query results, which can be verified to come from an authoritative source. This verification mitigates the ability for a rogue DNS server to be used to spoof query results and to direct users to malicious sites. DNSSEC provides for the verification of the integrity of DNS queries. It does not provide any protection from snooping or data exposure. Although it may help lessen account hijacking by preventing users from being directed to rogue sites, it cannot by itself eliminate the possibility.

asked 18/09/2024
Carlotta Agape
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first