nerdexam
EC-Council

EC0-350 · Question #446

EC0-350 Question #446: Real Exam Question with Answer & Explanation

The correct answer is A. ARP spoof the default gateway. See the full explanation below for the reasoning.

Question

Harold is the senior security analyst for a small state agency in New York. He has no other security professionals that work under him, so he has to do all the security-related tasks for the agency. Coming from a computer hardware background, Harold does not have a lot of experience with security methodologies and technologies, but he was the only one who applied for the position. Harold is currently trying to run a Sniffer on the agency's network to get an idea of what kind of traffic is being passed around, but the program he is using does not seem to be capturing anything. He pours through the Sniffer's manual, but cannot find anything that directly relates to his problem. Harold decides to ask the network administrator if he has any thoughts on the problem. Harold is told that the Sniffer was not working because the agency's network is a switched network, which cannot be sniffed by some programs without some tweaking. What technique could Harold use to sniff his agency's switched network?

Options

  • AARP spoof the default gateway
  • BConduct MiTM against the switch
  • CLaunch smurf attack against the switch
  • DFlood the switch with ICMP packets

Community Discussion

No community discussion yet for this question.

Full EC0-350 Practice