nerdexam
Cisco

200-201 · Question #161

Refer to the exhibit. What is occurring?

The correct answer is D. denial-of-service attack. Assuming the exhibit showed characteristics of a DoS attack, the observed network traffic indicates a denial-of-service attack, characterized by an overwhelming volume of requests or malformed packets aimed at exhausting target resources or bandwidth.

Submitted by wei.xz· Mar 6, 2026Network Intrusion Analysis

Question

Refer to the exhibit. What is occurring?

Exhibit

200-201 question #161 exhibit

Options

  • AARP spoofing attack
  • Bman-in-the-middle attack
  • Cbrute-force attack
  • Ddenial-of-service attack

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    18% (6)
  • C
    9% (3)
  • D
    71% (24)

Why each option

Assuming the exhibit showed characteristics of a DoS attack, the observed network traffic indicates a denial-of-service attack, characterized by an overwhelming volume of requests or malformed packets aimed at exhausting target resources or bandwidth.

AARP spoofing attack

ARP spoofing involves manipulating ARP tables to redirect traffic locally, which would show incorrect MAC-to-IP mappings but not necessarily the overwhelming traffic volume of a DoS.

Bman-in-the-middle attack

A man-in-the-middle attack involves intercepting and potentially altering communication between two parties, which would show traffic flowing through an unexpected intermediary, but not necessarily a flood designed to take down a service.

Cbrute-force attack

A brute-force attack involves repeatedly guessing credentials or keys, typically characterized by many failed login attempts over a specific port (like SSH or RDP), not a generalized network saturation or service disruption traffic pattern.

Ddenial-of-service attackCorrect

Assuming the exhibit showed characteristics such as an abnormally high volume of traffic, many incomplete connections, or malformed packets directed at a target system, a denial-of-service (DoS) attack aims to render a service or system unavailable to legitimate users by flooding it with excessive requests or data, consuming its resources, or exploiting vulnerabilities to cause instability.

Concept tested: Network traffic analysis for DoS attacks

Source: https://learn.microsoft.com/en-us/azure/ddos-protection/ddos-attack-overview

Topics

#DoS attack#network attack types#traffic analysis

Community Discussion

No community discussion yet for this question.

Full 200-201 Practice