nerdexam
Exams220-802Questions#804
CompTIA

220-802 · Question #804

220-802 Question #804: Real Exam Question with Answer & Explanation

The correct answer is D: Social engineering. This is a textbook social engineering attack. The attacker used a believable pretext - posing as a job applicant - to gain legitimate physical access to the company's network, then exploited that access to install spyware. Social engineering manipulates people rather than systems

Question

A prospective employee asks for wired Internet access while waiting for a job interview. Later, it is discovered that spyware was uploaded to the network from this particular location and the prospective employee cannot be contacted with the information provided. Which of the following security threats is this an example of?

Options

  • APhishing
  • BShoulder surfing
  • CViruses
  • DSocial engineering

Explanation

This is a textbook social engineering attack. The attacker used a believable pretext - posing as a job applicant - to gain legitimate physical access to the company's network, then exploited that access to install spyware. Social engineering manipulates people rather than systems, bypassing technical security controls. Phishing (A) involves deceptive emails or messages to steal credentials. Shoulder surfing (B) means visually observing someone's screen or keyboard. A virus (C) is a type of malware, but the delivery method here - using human trust and deception to gain access - is the defining characteristic of social engineering, making D the correct category.

Community Discussion

No community discussion yet for this question.

Full 220-802 Practice