CS Professional · Artificial Intelligence, Data Analytics and Cyber Security - Laws and Practice · Network Basics and Security
An attacker sits on the same public Wi-Fi as a Hyderabad consultant and secretly relays and alters the messages between the consultant's laptop and the company's server, while both sides believe they talk directly. Which attack is this, and which security property is chiefly threatened?
This is a man-in-the-middle attack. The attacker intercepts and may modify traffic between two parties who think they are communicating directly, so confidentiality and integrity are threatened. Brute force, Smurf flooding and logic bombs work differently and do not describe secret relaying of messages.
- AMan-in-the-middle attack; confidentiality and integrity of communicationCorrect
- BBrute-force attack; availability of the server
- CSmurf attack; non-repudiation of transactions
- DLogic bomb; authorisation of administrators
Explanation
Secretly relaying and possibly altering communication between two parties is a man-in-the-middle attack, threatening confidentiality (eavesdropping) and integrity (alteration). Brute force guesses passwords, a Smurf attack is an ICMP-based flood affecting availability, and a logic bomb is malicious code triggered by a condition.
Did you get it right without looking?
One question tells you little. A timed set on Network Basics and Security shows your real accuracy, how long you take and where you lose marks.
More Network Basics and Security questions
- Mehta Textiles Ltd. wants its employees to access the company website using the name www.mehtatextiles.example rather than a numeric address…
- Which device operates mainly at the network layer to forward data packets between different networks, such as a company LAN and the internet…
- In a network where every computer is connected to a central hub or switch, and failure of one cable affects only that computer but failure o…
- Ravi's firm transmits large payroll files to its bank every night. The IT head proposes using AES for the file contents and RSA only to exch…
- Rahul, an employee of a Pune firm, works from home and connects to the office server through a VPN. What is the principal security benefit t…
- A security analyst notices an attacker sending TCP SYN packets to a server with spoofed source addresses and never completing the three-way …