Skip to content

CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice · Network Basics and Security

A security analyst notices an attacker sending TCP SYN packets to a server with spoofed source addresses and never completing the three-way handshake, filling up the server's connection queue. This attack is known as:

The attack is a SYN flood. The attacker sends many TCP SYN requests with spoofed addresses and never finishes the three-way handshake, so half-open connections fill the server's queue and legitimate users cannot connect. It is a form of denial-of-service attack on network availability.

  1. ASYN floodCorrect
  2. BCross-site scripting
  3. CSession hijacking
  4. DKeylogging

Explanation

A SYN flood exploits the TCP three-way handshake by sending many SYN requests without completing it, leaving half-open connections that exhaust the queue. Cross-site scripting injects scripts into web pages, session hijacking takes over a valid session, and keylogging records keystrokes.

Did you get it right without looking?

One question tells you little. A timed set on Network Basics and Security shows your real accuracy, how long you take and where you lose marks.

More Network Basics and Security questions