GIAC
GAWN · Question #64
A WPA2-Enterprise SSID uses PEAP with MSCHAPv2 and "Do not validate server certificate" is common on endpoints. What is the highest-impact risk?
Sign in or unlock GAWN to reveal the answer and full explanation for question #64. The question stem and answer options stay visible for context.
Advanced Wi-Fi Attacks and Mobile Device Exploitation
Question
A WPA2-Enterprise SSID uses PEAP with MSCHAPv2 and "Do not validate server certificate" is common on endpoints. What is the highest-impact risk?
Options
- AKRACK against the AP
- BOffline cracking of AES keys
- CCredential theft via evil twin + rogue RADIUS
- DWPS PIN brute force
Unlock GAWN to see the answer
You've previewed enough free GAWN questions. Unlock GAWN for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#PEAP-MSCHAPv2#evil twin#rogue RADIUS#certificate validation