nerdexam
(ISC)2(ISC)2

CERTIFIED-IN-CYBERSECURITY · Question #136

CERTIFIED-IN-CYBERSECURITY Question #136: Real Exam Question with Answer & Explanation

The correct answer is D: Phishing. A phishing attack emails a fraudulent message with the goal of tricking the recipient into disclosing sensitive information to the attacker (see ISC2 Study Guide, chapter 4, module 2). A Cross-Site Scripting attack tries to execute code on another website. Trojans are software th

Security Principles

Question

Which type of attack attempts to mislead the user into exposing personal information by sending fraudulent emails?

Options

  • ADenial of Service
  • BTrojans
  • CCross-Site Scripting
  • DPhishing

Explanation

A phishing attack emails a fraudulent message with the goal of tricking the recipient into disclosing sensitive information to the attacker (see ISC2 Study Guide, chapter 4, module 2). A Cross-Site Scripting attack tries to execute code on another website. Trojans are software that seem legitimate, but has hidden malicious functions. Trojans may be sent in a message, but are not themselves the message. A denial of service attack (DoS) compromises the availability of a system or service through a malicious overload of requests, thereby activating safety mechanisms that delay or limit the availability of that system or service.

Topics

#Phishing#Social Engineering#Attack Types#Email Security

Community Discussion

No community discussion yet for this question.

Full CERTIFIED-IN-CYBERSECURITY PracticeBrowse All CERTIFIED-IN-CYBERSECURITY Questions