nerdexam
GAQM

CPEH-001 · Question #51

An attacker, using a rogue wireless AP, performed an MITM attack and injected an HTML code to embed a malicious applet in all HTTP connections. When users accessed any page, the applet ran and…

The correct answer is B. Ettercap. ARP spoofing is an attack against an Ethernet or Wi-Fi network to get between the router and the target user. In an ARP-spoofing attack, messages meant for the target are sent to the attacker instead, allowing the attacker to spy on, deny service to, or man-in-the-middle a…

Sniffing and Session Hijacking

Question

An attacker, using a rogue wireless AP, performed an MITM attack and injected an HTML code to embed a malicious applet in all HTTP connections. When users accessed any page, the applet ran and exploited many machines. Which one of the following tools the hacker probably used to inject HTML code?

Options

  • AWireshark
  • BEttercap
  • CAircrack-ng
  • DTcpdump

How the community answered

(43 responses)
  • A
    14% (6)
  • B
    72% (31)
  • C
    5% (2)
  • D
    9% (4)

Explanation

ARP spoofing is an attack against an Ethernet or Wi-Fi network to get between the router and the target user. In an ARP-spoofing attack, messages meant for the target are sent to the attacker instead, allowing the attacker to spy on, deny service to, or man-in-the-middle a target. One of the most popular tools for performing this attack is Ettercap, which comes preinstalled on Kali Linux.

Topics

#Ettercap#MITM attack#HTML injection#rogue access point

Community Discussion

No community discussion yet for this question.

Full CPEH-001 Practice