ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 99 - SY0-601 discussion

Report
Export

A network analyst is investigating compromised corporate information. The analyst leads to a theory that network traffic was intercepted before being transmitted to the internet. The following output was captured on an internal host:

Based on the IoCS, which of the following was the MOST likely attack used to compromise the network communication?

A.
Denial of service
Answers
A.
Denial of service
B.
ARP poisoning
Answers
B.
ARP poisoning
C.
Command injection
Answers
C.
Command injection
D.
MAC flooding
Answers
D.
MAC flooding
Suggested answer: B

Explanation:

ARP poisoning (also known as ARP spoofing) is a type of attack where an attacker sends falsified ARP messages over a local area network to link the attacker's MAC address with the IP address of another host on the network. Reference: CompTIA Security+ Certification Exam Objectives - 2.5 Given a scenario, analyze potential indicators to determine the type of attack. Study Guide: Chapter 6, page 271.

asked 02/10/2024
Frederico Dionísio
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first