220-1002 · Question #653
A technician has been asked to review the configuration of an executive's SOHO network following a recent news report regarding home Internet routers that are being added to botnets for malicious…
The correct answer is B. Enabling WPA2-Enterprise encryption F. Disabling the SSID from being broadcast. The stated answer (B: WPA2-Enterprise, F: Disable SSID broadcast) appears to be an error in the answer key. The BEST defenses against a home router being recruited into a botnet are C) Changing default credentials - botnets (like Mirai) specifically scan for routers using…
Question
A technician has been asked to review the configuration of an executive's SOHO network following a recent news report regarding home Internet routers that are being added to botnets for malicious purposes. Which of the following would be BEST to prevent the router from being added to a botnet? (Select TWO).
Options
- AUpgrading to an enterprise-grade router
- BEnabling WPA2-Enterprise encryption
- CChanging the default credentials
- DUpdating to the latest firmware
- EReducing the transmit power levels
- FDisabling the SSID from being broadcast
How the community answered
(34 responses)- A12% (4)
- B76% (26)
- C3% (1)
- D3% (1)
- E6% (2)
Explanation
The stated answer (B: WPA2-Enterprise, F: Disable SSID broadcast) appears to be an error in the answer key. The BEST defenses against a home router being recruited into a botnet are C) Changing default credentials - botnets (like Mirai) specifically scan for routers using factory-default usernames and passwords to hijack them - and D) Updating to the latest firmware - firmware patches close known vulnerabilities that malware exploits. WPA2-Enterprise (B) requires a RADIUS server, is impractical in a SOHO environment, and only governs Wi-Fi client authentication, not the router's management interface. Disabling SSID broadcast (F) is security through obscurity and provides no real protection against botnet scanning tools that detect networks regardless of broadcast status. C and D are the industry-standard correct answers for this scenario.
Topics
Community Discussion
No community discussion yet for this question.