312-50V13 · Question #474
An attacker identified that a user and an access point are both compatible with WPA2 and WPA3 encryption. The attacker installed a rogue access point with only WPA2 compatibility in the vicinity and…
The correct answer is C. Downgrade security attack. The attacker performed a downgrade security attack by forcing a WPA3-capable client to connect using the less secure WPA2 protocol.
Question
Options
- ATiming-based attack
- BSide-channel attack
- CDowngrade security attack
- DCache-based attack
How the community answered
(34 responses)- A9% (3)
- B3% (1)
- C74% (25)
- D15% (5)
Why each option
The attacker performed a downgrade security attack by forcing a WPA3-capable client to connect using the less secure WPA2 protocol.
A timing-based attack infers information based on the time taken for operations, which is not the primary mechanism of forcing a protocol downgrade.
A side-channel attack exploits physical implementation characteristics (e.g., power consumption), not by manipulating encryption protocol negotiation.
A downgrade security attack involves an attacker forcing a system or connection to revert to a weaker, older, or less secure protocol or encryption standard, even when a stronger one is available. Here, the attacker exploits the dual compatibility to force WPA2, making it easier to crack.
A cache-based attack targets processor caches to extract data or exploit vulnerabilities, unrelated to forcing a downgrade in wireless encryption protocols.
Concept tested: Downgrade security attack
Source: https://www.cisco.com/c/en/us/products/wireless/white-paper-c11-742728.html
Topics
Community Discussion
No community discussion yet for this question.