312-50V12 · Question #105
John, a professional hacker, performs a network attack on a renowned organization and gains unauthorized access to the target network. He remains in the network without being detected for a long…
The correct answer is D. Advanced persistent threat. Advanced Persistent Threat (APT) perfectly describes John's attack because it involves a sophisticated, long-term intrusion where the attacker gains unauthorized access, remains undetected for an extended period, and silently exfiltrates sensitive data without causing visible…
Question
Options
- AInsider threat
- BDiversion theft
- CSpear-phishing sites
- DAdvanced persistent threat
How the community answered
(36 responses)- A6% (2)
- B3% (1)
- D92% (33)
Explanation
Advanced Persistent Threat (APT) perfectly describes John's attack because it involves a sophisticated, long-term intrusion where the attacker gains unauthorized access, remains undetected for an extended period, and silently exfiltrates sensitive data without causing visible damage - all hallmarks of APT activity.
Why the distractors are wrong:
- A (Insider threat) involves someone within the organization (employee or contractor) misusing their legitimate access - John is an external hacker, not an insider.
- B (Diversion theft) is a physical/social engineering tactic used to redirect deliveries or resources to a different location - unrelated to network hacking.
- C (Spear-phishing sites) refers to targeted fake websites used to harvest credentials - this may be a tool used during an attack, but it does not describe the overall attack strategy John employed.
Memory Tip: Think of APT as a "silent spy" - the three key words are Advanced (sophisticated), Persistent (stays for a long time), and Threat (actively harmful). If a question mentions long-term undetected access + data theft without destruction, always think APT.
Topics
Community Discussion
No community discussion yet for this question.