nerdexam
CompTIA

220-1102 · Question #205

A user connected a laptop to a wireless network and was tricked into providing login credentials for a website. Which of the following threats was used to carry out the attack?

The correct answer is B. Vishing. NOTE: The marked correct answer (B - Vishing) appears to be incorrect for this scenario. Vishing is voice phishing, where attackers use phone calls to trick users into revealing credentials. However, the scenario describes a user connecting to a wireless network and then being tr

Security

Question

A user connected a laptop to a wireless network and was tricked into providing login credentials for a website. Which of the following threats was used to carry out the attack?

Options

  • AZero day
  • BVishing
  • CDDoS
  • DEvil twin

How the community answered

(55 responses)
  • A
    4% (2)
  • B
    87% (48)
  • C
    7% (4)
  • D
    2% (1)

Explanation

NOTE: The marked correct answer (B - Vishing) appears to be incorrect for this scenario. Vishing is voice phishing, where attackers use phone calls to trick users into revealing credentials. However, the scenario describes a user connecting to a wireless network and then being tricked into entering credentials on a fake website - this is the textbook definition of an Evil Twin attack (D). An evil twin is a rogue Wi-Fi access point that mimics a legitimate network; once connected, users are redirected to fake login pages to harvest credentials. If this question appeared on an actual exam, D (Evil Twin) is the correct answer based on the described behavior. Zero day (A) is an unpatched vulnerability exploit. DDoS (C) is a service disruption attack.

Topics

#Vishing#Social Engineering#Credential Harvesting

Community Discussion

No community discussion yet for this question.

Full 220-1102 Practice