ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 56 - SY0-601 discussion

Report
Export

After a phishing scam fora user's credentials, the red team was able to craft payload to deploy on a server. The attack allowed the installation of malicious software that initiates a new remote session Which of the following types of attacks has occurred?

A.
Privilege escalation
Answers
A.
Privilege escalation
B.
Session replay
Answers
B.
Session replay
C.
Application programming interface
Answers
C.
Application programming interface
D.
Directory traversal
Answers
D.
Directory traversal
Suggested answer: A

Explanation:

"Privilege escalation is the act of exploiting a bug, design flaw, or configuration oversight in an operating system or software application to gain elevated access to resources that are normally protected from an application or user." In this scenario, the red team was able to install malicious software, which would require elevated privileges to access and install. Therefore, the type of attack that occurred is privilege escalation. Reference: CompTIA Security+ Study Guide, pages 111-112

asked 02/10/2024
Duc Hai
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first