ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 17 - SY0-601 discussion

Report
Export

A company recently experienced an attack during which 5 main website was directed to the atack- er’s web server, allowing the attacker to harvest credentials from unsuspecting customers. Which of the following should the company Implement to prevent this type of attack from occurring in the future?

A.
IPSec
Answers
A.
IPSec
B.
SSL/TLS
Answers
B.
SSL/TLS
C.
DNSSEC
Answers
C.
DNSSEC
D.
S/MIME
Answers
D.
S/MIME
Suggested answer: C

Explanation:

The attack described in the question is known as a DNS hijacking attack. In this type of attack, an attacker modifies the DNS records of a domain name to redirect traffic to their own server. This allows them to intercept traffic and steal sensitive information such as user credentials. To prevent this type of attack from occurring in the future, the company should implement C. DNSSEC.

DNSSEC (Domain Name System Security Extensions) is a security protocol that adds digital signatures to DNS records. This ensures that DNS records are not modified during transit and prevents DNS hijacking attacks.

asked 02/10/2024
Scott Wells
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first