nerdexam
CWNP

CWSP-207 · Question #88

Given: One of the security risks introduced by WPA2-Personal is an attack conducted by an authorized network user who knows the passphrase. In order to decrypt other users' traffic, the attacker…

The correct answer is A. Authenticator nonce B. Supplicant nonce C. Authenticator address (BSSID). See the full explanation below for the reasoning.

Question

Given: One of the security risks introduced by WPA2-Personal is an attack conducted by an authorized network user who knows the passphrase. In order to decrypt other users' traffic, the attacker must obtain certain information from the 4-way handshake of the other users. In addition to knowing the Pairwise Master Key (PMK) and the supplicant's address (SA), what other three inputs must be collected with a protocol analyzer to recreate encryption keys? (Choose 3)

Options

  • AAuthenticator nonce
  • BSupplicant nonce
  • CAuthenticator address (BSSID)
  • DGTKSA
  • EAuthentication Server nonce

How the community answered

(45 responses)
  • A
    78% (35)
  • D
    16% (7)
  • E
    7% (3)

Community Discussion

No community discussion yet for this question.

Full CWSP-207 Practice