nerdexam
CompTIA

SY0-301 · Question #479

While previously recommended as a security measure, disabling SSID broadcast is not effective against most attackers because network SSIDs are:

The correct answer is B. contained in certain wireless packets in plaintext. Disabling SSID broadcast is considered security through obscurity and provides minimal protection because SSIDs are still transmitted in plaintext within certain 802.11 wireless frames, such as probe request and probe response packets exchanged when a client connects, and in…

Threats, vulnerabilities, and mitigations

Question

While previously recommended as a security measure, disabling SSID broadcast is not effective against most attackers because network SSIDs are:

Options

  • Ano longer used to authenticate to most wireless networks.
  • Bcontained in certain wireless packets in plaintext.
  • Ccontained in all wireless broadcast packets by default.
  • Dno longer supported in 802.11 protocols.

How the community answered

(22 responses)
  • A
    5% (1)
  • B
    91% (20)
  • C
    5% (1)

Explanation

Disabling SSID broadcast is considered security through obscurity and provides minimal protection because SSIDs are still transmitted in plaintext within certain 802.11 wireless frames, such as probe request and probe response packets exchanged when a client connects, and in management frames. A passive attacker using a wireless sniffer (e.g., Wireshark, Kismet) can capture these frames and easily discover the hidden SSID. SSIDs are still used for authentication (A is false), are not in all broadcast packets by default when hidden (C is false), and are fully supported in 802.11 protocols (D is false).

Topics

#SSID broadcast#wireless security#security through obscurity#802.11

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice