nerdexam
(ISC)2

SSCP · Question #1140

Although it is considered a low tech attack ____________ is still a very effective way of gaining unauthorized access to network systems.

The correct answer is C. Social Engineering. Despite being a low-tech method, social engineering remains a highly effective attack for gaining unauthorized access to network systems by exploiting human psychology.

Submitted by yaw92· Apr 18, 2026Security Concepts and Practices

Question

Although it is considered a low tech attack ____________ is still a very effective way of gaining unauthorized access to network systems.

Options

  • ASniffing
  • BEavesdropping
  • CSocial Engineering
  • DShoulder Surfing
  • ENone of the items are correct

How the community answered

(35 responses)
  • B
    3% (1)
  • C
    91% (32)
  • E
    6% (2)

Why each option

Despite being a low-tech method, social engineering remains a highly effective attack for gaining unauthorized access to network systems by exploiting human psychology.

ASniffing

Sniffing is a technical attack involving the interception of network traffic, requiring specific tools and network access, which is not considered low-tech.

BEavesdropping

Eavesdropping is covertly listening to private communications, which can be a component of information gathering but is not the primary 'low-tech attack' for gaining network system access.

CSocial EngineeringCorrect

Social engineering is a low-tech attack that manipulates individuals into divulging confidential information or performing actions that compromise security, relying on deception rather than exploiting technical vulnerabilities.

DShoulder Surfing

Shoulder surfing is a physical attack where an attacker directly observes a user entering sensitive information, a specific technique rather than the broader category of psychological manipulation.

ENone of the items are correct

Concept tested: Social engineering definition

Source: https://learn.microsoft.com/en-us/security/compass/human-firewall-social-engineering

Topics

#Social Engineering#Low-tech attacks#Human element#Unauthorized access

Community Discussion

No community discussion yet for this question.

Full SSCP Practice