nerdexam
GIAC

GSLC · Question #293

Victor wants to use Wireless Zero Configuration (WZC) to establish a wireless network connection using his computer running on Windows XP operating system. Which of the following are the most likely…

The correct answer is B. Information of probing for networks can be viewed using a wireless analyzer and may be used to C. Attacker by creating a fake wireless network with high power antenna cause Victor's computer to. WZC on Windows XP exposes users to passive probe request interception and rogue access point attacks because it automatically broadcasts known SSIDs and connects to the strongest matching signal.

Security Architecture & Engineering

Question

Victor wants to use Wireless Zero Configuration (WZC) to establish a wireless network connection using his computer running on Windows XP operating system. Which of the following are the most likely threats to his computer? Each correct answer represents a complete solution. Choose two.

Options

  • AAttacker can use the Ping Flood DoS attack if WZC is used.
  • BInformation of probing for networks can be viewed using a wireless analyzer and may be used to
  • CAttacker by creating a fake wireless network with high power antenna cause Victor's computer to
  • DIt will not allow the configuration of encryption and MAC filtering. Sending information is not

How the community answered

(40 responses)
  • A
    8% (3)
  • B
    75% (30)
  • D
    18% (7)

Why each option

WZC on Windows XP exposes users to passive probe request interception and rogue access point attacks because it automatically broadcasts known SSIDs and connects to the strongest matching signal.

AAttacker can use the Ping Flood DoS attack if WZC is used.

Ping Flood DoS attacks target IP-layer availability and are completely unrelated to the WZC wireless configuration service or its specific vulnerabilities.

BInformation of probing for networks can be viewed using a wireless analyzer and may be used toCorrect

WZC continuously broadcasts probe requests containing previously connected network SSIDs, which any wireless protocol analyzer can passively capture and use to map the user's network history or plan targeted attacks.

CAttacker by creating a fake wireless network with high power antenna cause Victor's computer toCorrect

Because WZC auto-connects to the strongest signal matching a known SSID, an attacker can deploy a high-powered rogue access point broadcasting that SSID to hijack the connection and perform man-in-the-middle attacks.

DIt will not allow the configuration of encryption and MAC filtering. Sending information is not

WZC does support configuring WEP encryption and MAC filtering is a separate AP-level control; this statement is factually incorrect about WZC's capabilities.

Concept tested: Wireless Zero Configuration rogue AP and probe risks

Source: https://learn.microsoft.com/en-us/previous-versions/windows/it-pro/windows-xp/bb457044(v=technet.10)

Topics

#wireless security#WZC#evil twin attack#wireless sniffing

Community Discussion

No community discussion yet for this question.

Full GSLC Practice