CERTIFIED-IN-CYBERSECURITY · Question #378
Which of the following is a definition of phishing?
The correct answer is D. An attack that attempts to redirect legitimate users to malicious websites. Phishing is a social engineering attack where attackers attempt to redirect or lure legitimate users to fraudulent/malicious websites that impersonate trusted entities (banks, login pages, etc.) in order to steal credentials or sensitive information. Option A describes a…
Question
Which of the following is a definition of phishing?
Options
- AAn attack that consumes network resources and prevents legitimate activity
- BAn attack that attempts to gain access to a system using a false identity
- CAn attack that inserts a program into a system to alter data
- DAn attack that attempts to redirect legitimate users to malicious websites
How the community answered
(41 responses)- A2% (1)
- B2% (1)
- D95% (39)
Explanation
Phishing is a social engineering attack where attackers attempt to redirect or lure legitimate users to fraudulent/malicious websites that impersonate trusted entities (banks, login pages, etc.) in order to steal credentials or sensitive information. Option A describes a Denial-of-Service (DoS) attack. Option B describes identity spoofing or impersonation. Option C describes malware or a Trojan horse attack. Option D correctly captures phishing's core mechanism: deceptively redirecting users to malicious sites.
Topics
Community Discussion
No community discussion yet for this question.