CNX-001 · Question #81
An administrator logged in to a cloud account on a shared machine but forgot to log out after the session ended. Which of the following types of security threats does this action pose?
The correct answer is C. On-path attack. By leaving an active session open on a shared machine, an attacker with access to that machine can intercept or hijack the administrator's session tokens or credentials - classic on-path behavior - allowing them to impersonate the admin without needing elevated exploits.
Question
An administrator logged in to a cloud account on a shared machine but forgot to log out after the session ended. Which of the following types of security threats does this action pose?
Options
- AIP spoofing
- BZero-day
- COn-path attack
- DPrivilege escalation
How the community answered
(19 responses)- A5% (1)
- B16% (3)
- C74% (14)
- D5% (1)
Explanation
By leaving an active session open on a shared machine, an attacker with access to that machine can intercept or hijack the administrator's session tokens or credentials - classic on-path behavior - allowing them to impersonate the admin without needing elevated exploits.
Topics
Community Discussion
No community discussion yet for this question.