GPEN · Question #371
Which of the following are considered Bluetooth security violations? Each correct answer represents a complete solution. Choose two.
The correct answer is C. Bluebug attack D. Bluesnarfing. Bluebug and Bluesnarfing are attacks that exploit Bluetooth vulnerabilities to gain unauthorized access to or control over devices.
Question
Which of the following are considered Bluetooth security violations? Each correct answer represents a complete solution. Choose two.
Options
- ASQL injection attack
- BCross site scripting attack
- CBluebug attack
- DBluesnarfing
- ESocial engineering
How the community answered
(33 responses)- A3% (1)
- B6% (2)
- C76% (25)
- E15% (5)
Why each option
Bluebug and Bluesnarfing are attacks that exploit Bluetooth vulnerabilities to gain unauthorized access to or control over devices.
SQL injection is an attack against databases through malicious query input and has no relation to Bluetooth protocols or wireless proximity attacks.
Cross-site scripting (XSS) is a web application attack that injects malicious scripts into web pages and is unrelated to Bluetooth.
Bluebug exploits Bluetooth firmware flaws to gain full control of a target device, allowing an attacker to make calls, send messages, and access data without the owner's knowledge.
Bluesnarfing is the unauthorized theft of data from a Bluetooth-enabled device by exploiting Bluetooth protocol weaknesses to access contacts, messages, and other stored information.
Social engineering is a human-manipulation tactic that exploits people rather than Bluetooth protocol vulnerabilities.
Concept tested: Bluetooth-specific wireless attack types
Source: https://www.bluetooth.com/learn-about-bluetooth/key-attributes/bluetooth-security/
Topics
Community Discussion
No community discussion yet for this question.