112-52 · Question #103
Which countermeasure can mitigate the risk of a rogue access point?
The correct answer is B. Conducting regular wireless network audits. Regular wireless network audits (B) directly detect rogue access points by scanning for unauthorized devices broadcasting on your network - you can't remove what you haven't found, making detection the foundational countermeasure. Why the distractors fail: A (WPS): Wi-Fi Protecte
Question
Which countermeasure can mitigate the risk of a rogue access point?
Options
- AImplementing WPS
- BConducting regular wireless network audits
- CUsing VPNs over wireless networks
- DDisabling DHCP on the router
How the community answered
(24 responses)- A4% (1)
- B79% (19)
- C13% (3)
- D4% (1)
Explanation
Regular wireless network audits (B) directly detect rogue access points by scanning for unauthorized devices broadcasting on your network - you can't remove what you haven't found, making detection the foundational countermeasure.
Why the distractors fail:
- A (WPS): Wi-Fi Protected Setup actually increases attack surface through its PIN vulnerability and doesn't help identify rogue APs at all.
- C (VPNs): A VPN protects data in transit but does nothing to prevent a rogue AP from existing or attracting unsuspecting users to connect to it.
- D (Disabling DHCP): A rogue AP typically runs its own DHCP server, so disabling DHCP on your legitimate router has no effect on the attacker's device.
Memory tip: Think "you can't fight what you can't see" - audits = awareness, and awareness is always the first step in security defense. If a question asks about rogue APs, look for the answer that involves discovery or monitoring.
Topics
Community Discussion
No community discussion yet for this question.