ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 492 - CAS-004 discussion

Report
Export

An internal security audit determines that Telnet is currently being used within the environment to manage network switches. Which of the following tools should be utilized to identify credentials in plaintext that are used to log in to these devices?

A.
Fuzzer
Answers
A.
Fuzzer
B.
Network traffic analyzer
Answers
B.
Network traffic analyzer
C.
HTTP interceptor
Answers
C.
HTTP interceptor
D.
Port scanner
Answers
D.
Port scanner
E.
Password cracker
Answers
E.
Password cracker
Suggested answer: B

Explanation:

A network traffic analyzer (also known as a packet sniffer) is the best tool to identify credentials being transmitted in plaintext, such as those used in Telnet sessions. Since Telnet transmits data without encryption, a network traffic analyzer can capture the traffic between the client and the network switches, revealing sensitive information, including login credentials, in clear text. This tool helps identify insecure protocols and enables remediation by switching to encrypted alternatives like SSH. CASP+ highlights the importance of using secure protocols and tools like traffic analyzers to identify vulnerabilities in network communications.

CASP+ CAS-004 Exam Objectives: Domain 2.0 -- Enterprise Security Operations (Network Traffic Analysis and Insecure Protocols)

CompTIA CASP+ Study Guide: Monitoring Network Traffic for Plaintext Credentials

asked 02/10/2024
Ed Quinn
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first