Soru

Zorluk: KolayCommon Network Attack Types and Vectors

A network technician discovers an unauthorized wireless router plugged into a corporate network switch port inside an unsecured conference room. The device is broadcasting a wireless network that mimics the legitimate company network to intercept employee credentials. Which of the following statements accurately describe this security threat? (Select TWO)

  1. The unauthorized wireless device functions as a rogue access point on the corporate network.Cevap
  2. The setup allows the attacker to execute a Man-in-the-Middle (MitM) attack against connecting clients.Cevap
  3. C
    This scenario represents a DNS amplification attack that uses public open resolvers to overload internal switch interfaces.
  4. D
    The threat actor is using SSH port 23 traffic to corrupt the local switch's DNS record mapping table.

Cevap

The security threat involves a rogue access point that facilitates a Man-in-the-Middle (MitM) attack on connecting network clients.
Plugging an unauthorized wireless access point into an internal network port establishes a rogue access point. When users connect to this unauthorized access point, traffic passes through the attacker's hardware, enabling a Man-in-the-Middle (MitM) attack to intercept sensitive data.

Adım Adım Çözüm

1
Identify the physical and wireless attack vector described in the scenario.
An unauthorized wireless router connected to an internal switch port is classified as a rogue access point.
Connecting unauthorized wireless devices directly to an enterprise network port bypasses network perimeter security policies.
2
Determine the objective and operational impact of the attack.
Intercepting network traffic passing through the fake wireless interface constitutes a Man-in-the-Middle (MitM) attack.
The attacker places their hardware between wireless clients and the enterprise network to capture sensitive user credentials.

Anahtar Kavram

Rogue Access Points and Man-in-the-Middle (MitM) Wireless Attacks
Bu soruyu puanla