312-50V13 · Question #471
An attacker utilizes a Wi-Fi Pineapple to run an access point with a legitimate-looking SSID for a nearby business in order to capture the wireless password. What kind of attack is this?
The correct answer is B. Evil-twin attack. Evil-Twin Attack Explained Option B is correct because an evil-twin attack involves creating a rogue access point that mimics a legitimate Wi-Fi network (same or similar SSID) to trick users into connecting, allowing the attacker to intercept credentials and traffic - which is…
Question
Options
- AMAC spoofing attack
- BEvil-twin attack
- CWar driving attack
- DPhishing attack
How the community answered
(37 responses)- A3% (1)
- B95% (35)
- C3% (1)
Explanation
Evil-Twin Attack Explained
Option B is correct because an evil-twin attack involves creating a rogue access point that mimics a legitimate Wi-Fi network (same or similar SSID) to trick users into connecting, allowing the attacker to intercept credentials and traffic - which is exactly what the Wi-Fi Pineapple is designed to facilitate.
Why the distractors are wrong:
- A (MAC spoofing): This involves forging a device's MAC address to impersonate another device on a network, not creating a fake access point
- C (War driving): This is the passive act of driving around scanning for open/vulnerable Wi-Fi networks, not actively deploying a rogue AP
- D (Phishing): While phishing also involves deception, it specifically refers to fraudulent emails or websites - not fake wireless access points
Memory Tip: Think of it like an evil twin in a movie - it looks exactly like the real thing (same SSID, legitimate-looking name) but has sinister intentions. The "twin" in evil-twin = the AP is a duplicate of a real network, trying to steal your password when you connect.
Topics
Community Discussion
No community discussion yet for this question.