ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 368 - CAS-004 discussion

Report
Export

An ISP is receiving reports from a portion of its customers who state that typosquatting is occurring when they type in a portion of the URL for the ISP's website. The reports state that customers are being directed to an advertisement website that is asking for personal information. The security team has verified the DNS system is returning proper results and has no known lOCs. Which of the following should the security team implement to best mitigate this situation?

A.
DNSSEC
Answers
A.
DNSSEC
B.
DNS filtering
Answers
B.
DNS filtering
C.
Multifactor authentication
Answers
C.
Multifactor authentication
D.
Self-signed certificates
Answers
D.
Self-signed certificates
E.
Revocation of compromised certificates
Answers
E.
Revocation of compromised certificates
Suggested answer: A

Explanation:

DNS Security Extensions (DNSSEC) adds a layer of security to the DNS lookup and response process which can prevent users from being redirected to fraudulent websites, a common goal of typosquatting. DNSSEC ensures that the DNS data has not been modified from its original state and is especially useful if the DNS system is returning proper results and there are no known Indicators of Compromise (IoCs). It uses digital signatures and public-key encryption to provide authentication for DNS data.

asked 02/10/2024
Pradap Singh
32 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first