nerdexam
EC-Council

212-89 · Question #162

Which of the following techniques helps incident handlers to detect man-in-the-middle attack by finding the new APs and trying to connect an already established channel, even if the spoofed AP…

The correct answer is D. Access point monitoring. Access point monitoring is the technique that helps incident handlers to detect man-in-the-middle (MitM) attacks by continuously observing and managing the wireless access points (APs) within a network. This includes identifying unauthorized or new APs attempting to connect to…

Incident Handling and Response Technologies

Question

Which of the following techniques helps incident handlers to detect man-in-the-middle attack by finding the new APs and trying to connect an already established channel, even if the spoofed AP consists similar IP and MAC addresses as of the original AP?

Options

  • AWireless client monitoring
  • BNetwork traffic monitoring
  • CGeneral wireless traffic monitoring
  • DAccess point monitoring

How the community answered

(66 responses)
  • A
    9% (6)
  • B
    15% (10)
  • C
    5% (3)
  • D
    71% (47)

Explanation

Access point monitoring is the technique that helps incident handlers to detect man-in-the-middle (MitM) attacks by continuously observing and managing the wireless access points (APs) within a network. This includes identifying unauthorized or new APs attempting to connect to the network or mimic existing APs, even if they present similar IP and MAC addresses to legitimate access points. Through access point monitoring, incident handlers can quickly identify and mitigate spoofed APs, thus preventing MitM attacks that exploit wireless networks by intercepting and manipulating communications.

Topics

#MITM detection#wireless security#access point monitoring#rogue AP

Community Discussion

No community discussion yet for this question.

Full 212-89 Practice