N10-009 · Question #540
An attacker gained access to the hosts file on an endpoint and modified it. Now, a user is redirected from the company's home page to a fraudulent website. Which of the following most likely happened?
The correct answer is A. DNS spoofing. When the hosts file is altered, local name resolution is compromised, and domain queries are redirected to malicious IP addresses. This is a form of DNS spoofing/poisoning, where false mappings trick users into visiting fraudulent websites.
Question
An attacker gained access to the hosts file on an endpoint and modified it. Now, a user is redirected from the company's home page to a fraudulent website. Which of the following most likely happened?
Options
- ADNS spoofing
- BPhishing
- CVLAN hopping
- DARP poisoning
How the community answered
(48 responses)- A71% (34)
- B4% (2)
- C8% (4)
- D17% (8)
Explanation
When the hosts file is altered, local name resolution is compromised, and domain queries are redirected to malicious IP addresses. This is a form of DNS spoofing/poisoning, where false mappings trick users into visiting fraudulent websites.
Community Discussion
No community discussion yet for this question.