nerdexam
CompTIA

SY0-501 · Question #255

Which of the following BEST describes an attack where communications between two parties are intercepted and forwarded to each party with neither party being aware of the interception and potential…

The correct answer is B. Main-in-the-middle. This question describes a Man-in-the-middle (MITM) attack, where an attacker intercepts, relays, and potentially modifies communications between two parties without their knowledge.

Submitted by yuriko_h· Mar 4, 2026Threats, vulnerabilities, and mitigations

Question

Which of the following BEST describes an attack where communications between two parties are intercepted and forwarded to each party with neither party being aware of the interception and potential modification to the communications?

Options

  • ASpear phishing
  • BMain-in-the-middle
  • CURL hijacking
  • DTransitive access

How the community answered

(30 responses)
  • A
    7% (2)
  • B
    70% (21)
  • C
    20% (6)
  • D
    3% (1)

Why each option

This question describes a Man-in-the-middle (MITM) attack, where an attacker intercepts, relays, and potentially modifies communications between two parties without their knowledge.

ASpear phishing

Spear phishing is a targeted social engineering attack using deceptive communications, often emails, to trick a specific individual into divulging information or taking action, not passively intercepting and forwarding ongoing data exchanges.

BMain-in-the-middleCorrect

A Man-in-the-middle (MITM) attack is precisely defined as an attacker positioning themselves between two communicating parties, intercepting their messages, potentially altering them, and then forwarding them on, making both parties believe they are communicating directly with each other. The core characteristic is the covert interception and relay of communication, often with modification capability.

CURL hijacking

URL hijacking, or typosquatting, involves registering domain names similar to legitimate ones to redirect users to malicious sites, which is a domain-based attack rather than an interception of active communication streams.

DTransitive access

Transitive access refers to an entity gaining indirect access to a resource through an intermediary that has direct access, which is a security concept related to privilege escalation or lateral movement, not the real-time interception and modification of communication between two active parties.

Concept tested: Man-in-the-middle (MITM) attack definition

Source: https://learn.microsoft.com/en-us/windows/security/threat-protection/microsoft-defender-for-endpoint/man-in-the-middle-attack

Topics

#man-in-the-middle#MITM#attack definitions#network attacks

Community Discussion

No community discussion yet for this question.

Full SY0-501 Practice