nerdexam
Exams350-001Questions#38
Cisco

350-001 · Question #38

350-001 Question #38: Real Exam Question with Answer & Explanation

The correct answer is D: A potential Man-in-the-middle Attack can be used against the clients.. A rogue DHCP server is typically used in conjunction with a network attacker who launches man- in- the-middle (MitM) attacks. MitM is an attack technique in which the attacker exploits normal protocol processing behavior to reroute normal traffic flow between two endpoints. A hac

Question

Why would a rogue host that is running a DHCP Server on a Campus LAN network present a security risk?

Options

  • AIt may allocate IP addresses from an unknown subnet to the users
  • Ball Multicast traffic can be sniffer y using the DHCO Multicasr capabilities
  • Cthe CPU utilization of the first hop router can be overloaded by exploiting DHCP Relay open ports
  • DA potential Man-in-the-middle Attack can be used against the clients.

Explanation

A rogue DHCP server is typically used in conjunction with a network attacker who launches man- in- the-middle (MitM) attacks. MitM is an attack technique in which the attacker exploits normal protocol processing behavior to reroute normal traffic flow between two endpoints. A hacker will broadcast DHCP requests with spoofed MAC addresses, thereby exhausting the address space of the legitimate DHCP server. Once the addresses are exhausted, the rogue DHCP server provides DHCP responses to users' DHCP requests. These responses would include DNS servers and a default gateway, which would be used to launch a MitM attack.

Community Discussion

No community discussion yet for this question.

Full 350-001 Practice