nerdexam
GIAC

GSNA · Question #117

John works as a professional Ethical Hacker. He has been assigned a project to test the security server. Now, he suggests some countermeasures to avoid such brute force attacks on the We- are-secure…

The correct answer is A. The site should use CAPTCHA after a specific number of failed login attempts. C. The site should restrict the number of login attempts to only three times. Using CAPTCHA or restricting the number of login attempts are good countermeasures against a brute force attack.

Network & Perimeter Auditing

Question

John works as a professional Ethical Hacker. He has been assigned a project to test the security server. Now, he suggests some countermeasures to avoid such brute force attacks on the We- are-secure server. Which of the following are countermeasures against a brute force attack?

Options

  • AThe site should use CAPTCHA after a specific number of failed login attempts.
  • BThe site should increase the encryption key length of the password.
  • CThe site should restrict the number of login attempts to only three times.
  • DThe site should force its users to change their passwords from time to time.

How the community answered

(27 responses)
  • A
    74% (20)
  • B
    15% (4)
  • D
    11% (3)

Explanation

Using CAPTCHA or restricting the number of login attempts are good countermeasures against a brute force attack.

Topics

#brute force attack#CAPTCHA#login attempt limits#authentication hardening

Community Discussion

No community discussion yet for this question.

Full GSNA Practice