N10-005 · Question #439
A user at a hotel sees two SSIDs; both are called "HotelWireless". After the PC connects to one of the APs, the user notices their browser homepage has been changed. Which of the following BEST…
The correct answer is C. Evil twin. An evil twin attack involves a rogue AP broadcasting the same SSID as a legitimate AP to trick users into connecting, allowing the attacker to manipulate traffic such as redirecting the browser homepage.
Question
A user at a hotel sees two SSIDs; both are called "HotelWireless". After the PC connects to one of the APs, the user notices their browser homepage has been changed. Which of the following BEST describes this AP?
Options
- AMan-in-the-middle
- BDDoS
- CEvil twin
- DWar driving
How the community answered
(21 responses)- A10% (2)
- C86% (18)
- D5% (1)
Why each option
An evil twin attack involves a rogue AP broadcasting the same SSID as a legitimate AP to trick users into connecting, allowing the attacker to manipulate traffic such as redirecting the browser homepage.
A man-in-the-middle attack is a broader category of interception attack; the evil twin is the specific wireless technique used to execute it, making 'evil twin' the more precise and correct answer.
A DDoS (Distributed Denial of Service) attack floods a target with traffic to make it unavailable - it does not involve spoofing an SSID or manipulating browser settings.
An evil twin is a rogue wireless access point configured with the same SSID as a trusted network to lure clients into connecting. Once connected, the attacker can intercept, modify, or redirect traffic - the altered browser homepage is a classic indicator of the rogue AP performing DNS hijacking or HTTP injection.
War driving is the act of driving around to discover and map wireless networks using a device, not the act of creating a rogue AP to intercept user traffic.
Concept tested: Evil twin rogue AP attack identification
Source: https://www.cisa.gov/uscert/ncas/tips/ST15-002
Topics
Community Discussion
No community discussion yet for this question.