Common Network Vulnerabilities Flashcards
6 cards from real CCST practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 6 Common Network Vulnerabilities flashcards as text
What type of attack involves intercepting communication between two parties without their knowledge?
Answer: Man-in-the-Middle
A MitM attack intercepts and potentially alters communication between two parties who believe they are communicating directly.
Which vulnerability allows attackers to overwhelm a network by flooding it with traffic?
Answer: DDoS attack
A DDoS attack uses multiple compromised systems to flood a target with traffic, making it unavailable to legitimate users.
What is a zero-day vulnerability?
Answer: A previously unknown vulnerability with no available patch
A zero-day is unknown to the vendor with no patch available. Developers have had zero days to fix it.
Which social engineering technique tricks users into clicking a malicious link disguised as a legitimate email?
Answer: Phishing
Phishing uses fraudulent emails from apparently trusted sources to trick recipients into revealing sensitive information.
What does ARP spoofing allow an attacker to do on a local network?
Answer: Redirect network traffic through their machine
ARP spoofing sends fake ARP replies to associate the attacker's MAC with another device's IP, redirecting traffic.
Which type of malware encrypts a victim's files and demands payment for the decryption key?
Answer: Ransomware
Ransomware encrypts files and demands payment, typically cryptocurrency, for the decryption key.