SY0-301 · Question #845
Sara, a security administrator, is noticing a slow down in the wireless network response. Sara launches a wireless sniffer and sees a large number of ARP packets being sent to the AP. Which of the…
The correct answer is A. IV attack. A large volume of ARP packets sent to an access point is the hallmark of an IV (Initialization Vector) attack, which forces the AP to generate traffic containing weak IVs used to crack WEP encryption.
Question
Sara, a security administrator, is noticing a slow down in the wireless network response. Sara launches a wireless sniffer and sees a large number of ARP packets being sent to the AP. Which of the following type of attacks is underway?
Options
- AIV attack
- BInterference
- CBlue jacking
- DPacket sniffing
How the community answered
(26 responses)- A62% (16)
- B23% (6)
- C4% (1)
- D12% (3)
Why each option
A large volume of ARP packets sent to an access point is the hallmark of an IV (Initialization Vector) attack, which forces the AP to generate traffic containing weak IVs used to crack WEP encryption.
An IV attack works by injecting or replaying ARP packets to force the AP to retransmit encrypted packets, generating a large number of IVs. By collecting enough weak IVs, an attacker can statistically derive the WEP encryption key. This attack specifically targets WEP's flawed use of initialization vectors.
Interference refers to physical or radio-frequency signal disruption from external sources, not malicious ARP packet flooding.
Bluejacking is a Bluetooth-based attack involving unsolicited message delivery and has no relation to ARP packets or Wi-Fi access points.
Packet sniffing is a passive activity of capturing traffic, not an active attack involving sending large volumes of ARP packets.
Concept tested: WEP IV attack via ARP flooding
Source: https://www.cisa.gov/sites/default/files/publications/Securing_Wireless_Networks.pdf
Topics
Community Discussion
No community discussion yet for this question.