N10-005 · Question #896
A SOHO had their wireless network breached on several occasions. The user turned off the SSID and enabled WEP encryption, but breaches are still occurring. Which of the following will improve…
The correct answer is D. Enable WPA2 encryption. WEP encryption is fundamentally broken and can be cracked in minutes regardless of SSID visibility, so upgrading to WPA2 is required to prevent unauthorized access.
Question
A SOHO had their wireless network breached on several occasions. The user turned off the SSID and enabled WEP encryption, but breaches are still occurring. Which of the following will improve security and MOST likely prevent future breaches?
Options
- ATurn down the signal strength
- BReplace the WAP and enable WEP
- CChange both the SSID and WEP key
- DEnable WPA2 encryption
How the community answered
(34 responses)- A9% (3)
- B6% (2)
- C15% (5)
- D71% (24)
Why each option
WEP encryption is fundamentally broken and can be cracked in minutes regardless of SSID visibility, so upgrading to WPA2 is required to prevent unauthorized access.
Turning down signal strength reduces the coverage area slightly but does not address the fundamental cryptographic weakness of WEP encryption.
Replacing the WAP but keeping WEP encryption still uses a broken protocol and will not prevent breaches caused by WEP's inherent cryptographic flaws.
Changing the SSID and WEP key provides no lasting protection because WEP keys can be recovered by capturing a sufficient number of packets regardless of the key value used.
WPA2 uses AES (Advanced Encryption Standard) with CCMP, which is cryptographically strong and not subject to the RC4 stream cipher vulnerabilities that make WEP trivially crackable. Enabling WPA2 replaces the broken WEP protocol entirely, providing robust encryption that protects the wireless network against the passive traffic analysis attacks used to crack WEP.
Concept tested: WPA2 AES encryption as replacement for broken WEP
Source: https://learn.microsoft.com/en-us/windows/security/operating-system-security/network-security/wifi-security
Topics
Community Discussion
No community discussion yet for this question.