nerdexam
(ISC)2

SSCP · Question #8

Which of the following attacks could capture network user passwords?

The correct answer is B. Sniffing. Sniffing (packet sniffing) involves capturing and analyzing network traffic passing through a network interface. If authentication credentials are transmitted in plaintext (e.g., via unencrypted protocols like Telnet or FTP), a sniffing attack can capture those passwords. Data…

Submitted by anna_se· Apr 18, 2026Network and Communications Security

Question

Which of the following attacks could capture network user passwords?

Options

  • AData diddling
  • BSniffing
  • CIP Spoofing
  • DSmurfing

How the community answered

(35 responses)
  • A
    6% (2)
  • B
    91% (32)
  • D
    3% (1)

Explanation

Sniffing (packet sniffing) involves capturing and analyzing network traffic passing through a network interface. If authentication credentials are transmitted in plaintext (e.g., via unencrypted protocols like Telnet or FTP), a sniffing attack can capture those passwords. Data diddling involves unauthorized modification of data before or during input. IP Spoofing forges source IP addresses to impersonate another host. Smurfing is a DDoS amplification attack using ICMP broadcasts - none of these directly capture passwords from network traffic the way sniffing does.

Topics

#Network sniffing#Password capture#Network attacks#Eavesdropping

Community Discussion

No community discussion yet for this question.

Full SSCP Practice