ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 132 - SY0-701 discussion

Report
Export

A company's end users are reporting that they are unable to reach external websites. After reviewing the performance data for the DNS severs, the analyst discovers that the CPU, disk, and memory usage are minimal, but the network interface is flooded with inbound traffic. Network logs show only a small number of DNS queries sent to this server. Which of the following best describes what the security analyst is seeing?

A.
Concurrent session usage
Answers
A.
Concurrent session usage
B.
Secure DNS cryptographic downgrade
Answers
B.
Secure DNS cryptographic downgrade
C.
On-path resource consumption
Answers
C.
On-path resource consumption
D.
Reflected denial of service
Answers
D.
Reflected denial of service
Suggested answer: D

Explanation:

A reflected denial of service (RDoS) attack is a type of DDoS attack that uses spoofed source IP addresses to send requests to a third-party server, which then sends responses to the victim server. The attacker exploits the difference in size between the request and the response, which can amplify the amount of traffic sent to the victim server. The attacker also hides their identity by using the victim's IP address as the source. A RDoS attack can target DNS servers by sending forged DNS queries that generate large DNS responses.This can flood the network interface of the DNS server and prevent it from serving legitimate requests from end users.Reference:CompTIA Security+ Study Guide: Exam SY0-701, 9th Edition, page 215-2161

asked 02/10/2024
Juan Tovar
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first