nerdexam
GIAC

GSLC · Question #246

John works as a professional Ethical Hacker. He has been assigned the project of testing the This rule can help him protect the We-are-secure server from the __________.

The correct answer is B. Nimda virus. The Nimda worm was notable for targeting and spreading through IIS web servers, making it the relevant threat to a network server in this context. Its multi-vector attack capability distinguished it from other viruses of the era.

Security Operations & Incident Response Leadership

Question

John works as a professional Ethical Hacker. He has been assigned the project of testing the This rule can help him protect the We-are-secure server from the __________.

Exhibit

GSLC question #246 exhibit

Options

  • AI LOVE YOU virus
  • BNimda virus
  • CChernobyl virus
  • DMelissa virus

How the community answered

(16 responses)
  • B
    94% (15)
  • D
    6% (1)

Why each option

The Nimda worm was notable for targeting and spreading through IIS web servers, making it the relevant threat to a network server in this context. Its multi-vector attack capability distinguished it from other viruses of the era.

AI LOVE YOU virus

The ILOVEYOU virus spread primarily through email attachments using a VBScript payload and did not specifically target or exploit web or file servers.

BNimda virusCorrect

Nimda was a multi-vector worm that specifically exploited Microsoft IIS web server vulnerabilities to spread, making it the threat most relevant to a server environment. It could propagate via web server exploitation, email, network shares, and infected web pages, enabling rapid lateral movement across networks. This server-targeting capability makes Nimda the correct answer when protecting a network server is the focus.

CChernobyl virus

The Chernobyl (CIH) virus targeted the system BIOS and hard drive boot sectors on individual workstations, not network-facing servers.

DMelissa virus

The Melissa virus was a macro virus that spread via infected Microsoft Word documents sent through email, not through web server exploitation.

Concept tested: Nimda worm IIS web server exploitation vector

Source: https://www.cisa.gov/uscert/ncas/alerts/AA01-250A

Topics

#Nimda virus#malware#IIS vulnerability#web server security

Community Discussion

No community discussion yet for this question.

Full GSLC Practice