nerdexam
CWNP

PW0-204 · Question #2

Given: John smith uses a coffee shop's internet hot spot to transfer funds between his checking and saving accounts at his bank's website. The bank's website uses HTTPS protocol to protect sensitive…

The correct answer is D. Before connecting to the banks website, johns association to the AP was hijacked. The Attacker interrupted. See the full explanation below for the reasoning.

Question

Given: John smith uses a coffee shop's internet hot spot to transfer funds between his checking and saving accounts at his bank's website. The bank's website uses HTTPS protocol to protect sensitive account information. A hacker was able to obtain john's bank account user ID and password and transfers john's money to another account. How did the hacker obtain john's bank Account user ID and password?

Exhibit

PW0-204 question #2 exhibit

Options

  • AJohn uses same username and password for banking that he does for email. John used a pop3 email
  • BThe bank's web server is using anX509 certificate that is no signed by a root CA, causing the user ID
  • CJohn's bank is using an expiredX509 certificate on there web server. The certificate is on john's certificate
  • DBefore connecting to the banks website, johns association to the AP was hijacked. The Attacker interrupted
  • EJohn accessed his corporate network with the IPSec VPN software at the wireless hotspot. An IPSec VPN

How the community answered

(25 responses)
  • A
    8% (2)
  • C
    4% (1)
  • D
    72% (18)
  • E
    16% (4)

Community Discussion

No community discussion yet for this question.

Full PW0-204 Practice