nerdexam
EC-Council

312-50V13 · Question #398

Kate dropped her phone and subsequently encountered an issue with the phone's internal speaker. Thus, she is using the phone's loudspeaker for phone calls and other activities. Bob, an attacker…

The correct answer is D. Spearphone attack. The attack described, where an attacker exploits a phone's loudspeaker to clandestinely monitor its audio output from various data sources, is known as a Spearphone attack.

Submitted by kim_seoul· Mar 6, 2026Hacking Mobile Platforms

Question

Kate dropped her phone and subsequently encountered an issue with the phone's internal speaker. Thus, she is using the phone's loudspeaker for phone calls and other activities. Bob, an attacker, takes advantage of this vulnerability and secretly exploits the hardware of Kate's phone so that he can monitor the loudspeaker's output from data sources such as voice assistants, multimedia messages, and audio files by using a malicious app to breach speech privacy. What is the type of attack Bob performed on Kate in the above scenario?

Options

  • AMan-in-the-disk attack
  • BaLTEr attack
  • CSIM card attack
  • DSpearphone attack

How the community answered

(18 responses)
  • A
    6% (1)
  • D
    94% (17)

Why each option

The attack described, where an attacker exploits a phone's loudspeaker to clandestinely monitor its audio output from various data sources, is known as a Spearphone attack.

AMan-in-the-disk attack

A Man-in-the-disk attack involves tampering with data stored on a device's disk by intercepting I/O operations, not exploiting audio hardware.

BaLTEr attack

An aLTEr attack is a type of man-in-the-middle attack that targets LTE cellular networks, specifically by manipulating DNS records, not a phone's internal speaker.

CSIM card attack

A SIM card attack targets vulnerabilities within the Subscriber Identity Module (SIM) card itself, often to compromise cellular services or gain access to phone functions, which is unrelated to the loudspeaker.

DSpearphone attackCorrect

A Spearphone attack leverages the internal speakers of a smartphone, often after physical damage or manipulation, to convert them into makeshift microphones. This allows an attacker, typically through a malicious app, to secretly eavesdrop on conversations, voice assistant commands, and other audio played through or near the device.

Concept tested: Spearphone attack mechanism

Topics

#Spearphone attack#mobile phone hacking#hardware exploitation#speech privacy

Community Discussion

No community discussion yet for this question.

Full 312-50V13 Practice