nerdexam
EC-Council

312-50V13 · Question #434

Attacker Rony installed a rogue access point within an organization's perimeter and attempted to intrude into its internal network. Johnson, a security auditor, identified some unusual traffic in…

The correct answer is B. Wireless network assessment. Wireless Network Assessment (B) is correct because Johnson's investigation directly involves a rogue access point - a wireless network threat - and he is specifically testing for weak and outdated wireless security mechanisms (such as WEP or weak WPA configurations) that are…

Submitted by tunde_lagos· Mar 6, 2026Hacking Wireless Networks

Question

Attacker Rony installed a rogue access point within an organization's perimeter and attempted to intrude into its internal network. Johnson, a security auditor, identified some unusual traffic in the internal network that is aimed at cracking the authentication mechanism. He immediately turned off the targeted network and tested for any weak and outdated security mechanisms that are open to attack. What is the type of vulnerability assessment performed by johnson in the above scenario?

Options

  • AHost-based assessment
  • BWireless network assessment
  • CApplication assessment
  • DDistributed assessment

How the community answered

(27 responses)
  • A
    11% (3)
  • B
    78% (21)
  • C
    7% (2)
  • D
    4% (1)

Explanation

Wireless Network Assessment (B) is correct because Johnson's investigation directly involves a rogue access point - a wireless network threat - and he is specifically testing for weak and outdated wireless security mechanisms (such as WEP or weak WPA configurations) that are vulnerable to authentication cracking attacks. This scenario is a textbook example of evaluating wireless infrastructure security.

Why the distractors are wrong:

  • A (Host-based) focuses on vulnerabilities within individual hosts/endpoints (OS, patches, configurations), not wireless infrastructure.
  • C (Application assessment) targets software applications for vulnerabilities like SQL injection or XSS, unrelated to access point threats.
  • D (Distributed assessment) evaluates vulnerabilities across multiple interconnected systems/networks simultaneously, which is not the focus here.

Memory Tip: Whenever you see keywords like "rogue access point," "wireless traffic," or "authentication cracking over Wi-Fi", immediately associate them with Wireless Network Assessment - if the attack vector is airborne, so is the assessment type! Think: "Rogue AP = Wireless VA."

Topics

#Rogue Access Point#Wireless Network Assessment#Vulnerability Assessment#Wireless Security

Community Discussion

No community discussion yet for this question.

Full 312-50V13 Practice