H12-725_V4.0 · Question #2
WAF devices can effectively and accurately resist CC attacks. Which of the following descriptions of CC attacks is incorrect?
The correct answer is B. The attack cost of CC attacks is relatively high, and launching an attack requires a large amount. Option B is the incorrect statement because CC (Challenge Collapsar) attacks are actually known for their low cost to launch - an attacker only needs simple HTTP request tools and access to proxy servers, making them accessible even with minimal resources. The statement's claim…
Question
WAF devices can effectively and accurately resist CC attacks. Which of the following descriptions of CC attacks is incorrect?
Options
- ACC attack is a type of DDoS attack
- BThe attack cost of CC attacks is relatively high, and launching an attack requires a large amount
- CCC attacks can use proxy servers to launch attacks, making it difficult to trace the source of the
- DCC attacks are mainly used to attack web servers, causing server resources to be exhausted and
How the community answered
(53 responses)- A9% (5)
- B70% (37)
- C17% (9)
- D4% (2)
Explanation
Option B is the incorrect statement because CC (Challenge Collapsar) attacks are actually known for their low cost to launch - an attacker only needs simple HTTP request tools and access to proxy servers, making them accessible even with minimal resources. The statement's claim that they require "a large amount" of cost reverses the real-world characteristic that makes CC attacks so common.
Why the other options are correct (and therefore not the answer):
- A is accurate - CC attacks are a Layer 7 application-level subtype of DDoS attacks.
- C is accurate - using proxy servers and botnets to mask origin IPs is a defining tactic of CC attacks, complicating attribution.
- D is accurate - CC attacks flood web servers with seemingly legitimate HTTP requests, exhausting CPU, memory, and database connections until the server can no longer respond.
Memory tip: Think of CC attacks as "cheap and clever" - they're dangerous precisely because they're low-cost and hard to trace, not because they require expensive infrastructure. If an answer says CC attacks are costly or resource-heavy to launch, flag it as wrong.
Topics
Community Discussion
No community discussion yet for this question.