nerdexam
CompTIA

N10-005 · Question #310

Which of the following attack types is being used if the originating IP address has been spoofed?

The correct answer is C. Smurf. A Smurf attack is a DDoS technique that relies on IP address spoofing to amplify traffic directed at a victim.

Network security

Question

Which of the following attack types is being used if the originating IP address has been spoofed?

Options

  • APing flood
  • BTrojan
  • CSmurf
  • DWorm

How the community answered

(48 responses)
  • A
    4% (2)
  • B
    2% (1)
  • C
    90% (43)
  • D
    4% (2)

Why each option

A Smurf attack is a DDoS technique that relies on IP address spoofing to amplify traffic directed at a victim.

APing flood

A ping flood overwhelms a target with ICMP requests but does not inherently involve IP spoofing.

BTrojan

A Trojan is malicious software disguised as legitimate software and is not related to IP spoofing.

CSmurfCorrect

In a Smurf attack, the attacker sends ICMP echo requests to a network broadcast address with the source IP spoofed to match the victim's IP address. All hosts on the network reply to the victim, flooding it with traffic. The spoofed source IP is the defining characteristic that distinguishes a Smurf attack from a simple ping flood.

DWorm

A worm is self-replicating malware that spreads across networks and does not involve IP address spoofing.

Concept tested: Smurf attack and IP spoofing

Source: https://www.cisa.gov/news-events/alerts/1998/01/05/smurf-ip-denial-service-attacks

Topics

#Smurf attack#IP spoofing#DDoS#network attacks

Community Discussion

No community discussion yet for this question.

Full N10-005 Practice