nerdexam
CompTIA

SY0-301 · Question #285

Which of the following BEST describes the type of attack that is occurring? (Select TWO).

The correct answer is A. DNS spoofing E. ARP attack. DNS spoofing (A) involves corrupting a DNS resolver's cache with false records, redirecting users to malicious IP addresses instead of legitimate ones. An ARP attack (E), also known as ARP poisoning or ARP spoofing, involves sending fake ARP messages to associate the attacker's…

Threats, vulnerabilities, and mitigations

Question

Which of the following BEST describes the type of attack that is occurring? (Select TWO).

Exhibits

SY0-301 question #285 exhibit 1
SY0-301 question #285 exhibit 2
SY0-301 question #285 exhibit 3
SY0-301 question #285 exhibit 4
SY0-301 question #285 exhibit 5
SY0-301 question #285 exhibit 6
SY0-301 question #285 exhibit 7

Options

  • ADNS spoofing
  • BMan-in-the-middle
  • CBackdoor
  • DReplay
  • EARP attack
  • FSpear phishing
  • GXmas attack

How the community answered

(47 responses)
  • A
    83% (39)
  • B
    2% (1)
  • C
    4% (2)
  • D
    9% (4)
  • G
    2% (1)

Explanation

DNS spoofing (A) involves corrupting a DNS resolver's cache with false records, redirecting users to malicious IP addresses instead of legitimate ones. An ARP attack (E), also known as ARP poisoning or ARP spoofing, involves sending fake ARP messages to associate the attacker's MAC address with a legitimate IP address, redirecting local network traffic. These two attacks are frequently used together: ARP poisoning redirects traffic at Layer 2 (local network), while DNS spoofing redirects traffic at the name resolution layer. Together they form a powerful interception mechanism. A man-in-the-middle (B) is often the goal or result of combining these two attacks, not the attack method itself.

Topics

#DNS spoofing#ARP poisoning#network attacks#man-in-the-middle

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice