McAfee
MA0-150 · Question #148
MA0-150 Question #148: Real Exam Question with Answer & Explanation
Sign in or unlock MA0-150 to reveal the answer and full explanation for question #148. The question stem and answer options stay visible for context.
Question
A consultant is hired to perform social engineering for a company known as MegaVal. To make the new site look legitimate, the consultant creates HTML for a login page and then uses MegaVal's cascading style sheets (CSS). Using email addresses harvested from MegaVal's website, the consultant sends emails to MegaVal employees requiring them to take part in a mandatory survey. The consultant now waits to see if any MegaVal employees login to the site and capture their usernames and passwords. After collecting numerous set of credentials, the consultant navigates to owa.megaval.com and is able to login to MegaVal employees Outlook web access accounts. What is the security issue?
Options
- AMegaVal failed to remove OWA from IIS.
- BThe MS Exchange server should be placed in the DMZ.
- CFirewalls did not restrict traffic.
- DMulti-factor authentication was not implemented.
Unlock MA0-150 to see the answer
You've previewed enough free MA0-150 questions. Unlock MA0-150 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.