A network technician inspecting local subnet traffic notices a high volume of unsolicited Address Resolution Protocol (ARP) reply packets mapping the legitimate default gateway's IP address to an unknown host's MAC address. Which of the following network attacks is directly indicated by this activity?
- ARP poisoningCevap
- BDNS spoofing
- CMAC flooding
- DVLAN hopping
Cevap
ARP poisoning is indicated because unsolicited ARP responses alter the IP-to-MAC mapping cache on target hosts to intercept local network traffic.
The correct option is ARP poisoning because sending forged, unsolicited ARP responses to link the IP address of a default gateway to an unauthorized MAC address is the primary indicator of an ARP poisoning (or ARP spoofing) attack on a local Ethernet network.
Adım Adım Çözüm
Anahtar Kavram
ARP Poisoning Attack Indicators