GSLC · Question #114
Which of the following can be used to mitigate the evil twin phishing attack?
The correct answer is C. IPSec VPN. An IPSec VPN mitigates an evil twin attack by encrypting all traffic end-to-end so that even if a user connects to a rogue access point, the attacker cannot read or manipulate the intercepted data.
Question
Which of the following can be used to mitigate the evil twin phishing attack?
Options
- AMagic Lantern
- BObiwan
- CIPSec VPN
- DSARA
How the community answered
(40 responses)- A3% (1)
- B5% (2)
- C83% (33)
- D10% (4)
Why each option
An IPSec VPN mitigates an evil twin attack by encrypting all traffic end-to-end so that even if a user connects to a rogue access point, the attacker cannot read or manipulate the intercepted data.
Magic Lantern is an FBI-developed keystroke-logging trojan used for law enforcement surveillance and has no function as a defensive countermeasure against wireless phishing attacks.
Obiwan is not a recognized standard network security tool and is unrelated to wireless attack mitigation or VPN technologies.
IPSec VPN establishes an authenticated, encrypted tunnel between the client and a trusted VPN gateway, protecting data confidentiality and integrity regardless of the underlying wireless network. Even if a user associates with an evil twin access point, the attacker sees only encrypted IPSec packets and cannot perform credential theft or session hijacking. This makes the evil twin attack ineffective as a phishing or interception vector.
SARA (Security Auditor's Research Assistant) is a network vulnerability scanning and auditing tool used to identify weaknesses, not to actively protect users from connecting to rogue wireless access points.
Concept tested: IPSec VPN mitigation of evil twin wireless attacks
Source: https://www.cisco.com/c/en/us/products/security/vpn-endpoint-security-clients/what-is-ipsec.html
Topics
Community Discussion
No community discussion yet for this question.