nerdexam
(ISC)2

SSCP · Question #184

An attack initiated by an entity that is authorized to access system resources but uses them in a way not approved by those who granted the authorization is known as a(n):

The correct answer is C. inside attack. An inside attack is an attack initiated by an entity inside the security perimeter, an entity that is authorized to access system resources but uses them in a way not approved by those who granted the authorization whereas an outside attack is initiated from outside the…

Submitted by alyssa_d· Apr 18, 2026Security Concepts and Practices

Question

An attack initiated by an entity that is authorized to access system resources but uses them in a way not approved by those who granted the authorization is known as a(n):

Options

  • Aactive attack
  • Boutside attack
  • Cinside attack
  • Dpassive attack

How the community answered

(43 responses)
  • A
    7% (3)
  • B
    2% (1)
  • C
    88% (38)
  • D
    2% (1)

Explanation

An inside attack is an attack initiated by an entity inside the security perimeter, an entity that is authorized to access system resources but uses them in a way not approved by those who granted the authorization whereas an outside attack is initiated from outside the perimeter, by an unauthorized or illegitimate user of the system. An active attack attempts to alter system resources to affect their operation and a passive attack attempts to learn or make use of the information from the system but does not affect system resources.

Topics

#Insider threat#Attack types#Threat actors

Community Discussion

No community discussion yet for this question.

Full SSCP Practice