nerdexam
CompTIA

N10-009 · Question #540

An attacker gained access to the hosts file on an endpoint and modified it. Now, a user is redirected from the company's home page to a fraudulent website. Which of the following most likely happened?

The correct answer is A. DNS spoofing. When the hosts file is altered, local name resolution is compromised, and domain queries are redirected to malicious IP addresses. This is a form of DNS spoofing/poisoning, where false mappings trick users into visiting fraudulent websites.

Submitted by yuriko_h· Mar 6, 2026Network Security

Question

An attacker gained access to the hosts file on an endpoint and modified it. Now, a user is redirected from the company's home page to a fraudulent website. Which of the following most likely happened?

Options

  • ADNS spoofing
  • BPhishing
  • CVLAN hopping
  • DARP poisoning

How the community answered

(48 responses)
  • A
    71% (34)
  • B
    4% (2)
  • C
    8% (4)
  • D
    17% (8)

Explanation

When the hosts file is altered, local name resolution is compromised, and domain queries are redirected to malicious IP addresses. This is a form of DNS spoofing/poisoning, where false mappings trick users into visiting fraudulent websites.

Community Discussion

No community discussion yet for this question.

Full N10-009 Practice