nerdexam
CompTIA

SY0-301 · Question #845

Sara, a security administrator, is noticing a slow down in the wireless network response. Sara launches a wireless sniffer and sees a large number of ARP packets being sent to the AP. Which of the…

The correct answer is A. IV attack. A large volume of ARP packets sent to an access point is the hallmark of an IV (Initialization Vector) attack, which forces the AP to generate traffic containing weak IVs used to crack WEP encryption.

Threats, vulnerabilities, and mitigations

Question

Sara, a security administrator, is noticing a slow down in the wireless network response. Sara launches a wireless sniffer and sees a large number of ARP packets being sent to the AP. Which of the following type of attacks is underway?

Options

  • AIV attack
  • BInterference
  • CBlue jacking
  • DPacket sniffing

How the community answered

(26 responses)
  • A
    62% (16)
  • B
    23% (6)
  • C
    4% (1)
  • D
    12% (3)

Why each option

A large volume of ARP packets sent to an access point is the hallmark of an IV (Initialization Vector) attack, which forces the AP to generate traffic containing weak IVs used to crack WEP encryption.

AIV attackCorrect

An IV attack works by injecting or replaying ARP packets to force the AP to retransmit encrypted packets, generating a large number of IVs. By collecting enough weak IVs, an attacker can statistically derive the WEP encryption key. This attack specifically targets WEP's flawed use of initialization vectors.

BInterference

Interference refers to physical or radio-frequency signal disruption from external sources, not malicious ARP packet flooding.

CBlue jacking

Bluejacking is a Bluetooth-based attack involving unsolicited message delivery and has no relation to ARP packets or Wi-Fi access points.

DPacket sniffing

Packet sniffing is a passive activity of capturing traffic, not an active attack involving sending large volumes of ARP packets.

Concept tested: WEP IV attack via ARP flooding

Source: https://www.cisa.gov/sites/default/files/publications/Securing_Wireless_Networks.pdf

Topics

#IV attack#wireless security#ARP injection#WEP vulnerability

Community Discussion

No community discussion yet for this question.

Full SY0-301 Practice