nerdexam
CompTIACompTIA

PT0-002 · Question #339

PT0-002 Question #339: Real Exam Question with Answer & Explanation

The correct answer is D: Ettercap. ARP poisoning is a technique that exploits the weakness of the ARP protocol to redirect network traffic to a malicious host. Ettercap is a tool that can perform ARP poisoning and other network attacks, such as DNS spoofing, SSL stripping, and password sniffing. Wireshark, Netcat,

Attacks and Exploits

Question

A penetration tester wants to accomplish ARP poisoning as part of an attack. Which of the following tools will the tester MOST likely utilize?

Options

  • AWireshark
  • BNetcat
  • CNmap
  • DEttercap

Explanation

ARP poisoning is a technique that exploits the weakness of the ARP protocol to redirect network traffic to a malicious host. Ettercap is a tool that can perform ARP poisoning and other network attacks, such as DNS spoofing, SSL stripping, and password sniffing. Wireshark, Netcat, and Nmap are not designed for ARP poisoning, although they can be used for other purposes, such as packet analysis, network communication, and port scanning.

Topics

#ARP poisoning#Ettercap#MITM attacks#Penetration testing tools

Community Discussion

No community discussion yet for this question.

Full PT0-002 PracticeBrowse All PT0-002 Questions