Network Security and Scanning Flashcards
7 cards from real Certified Ethical Hacker practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Network Security and Scanning flashcards as text
What is ARP spoofing primarily used to achieve?
Answer: Redirecting traffic to the attacker for a man-in-the-middle attack
ARP spoofing associates the attacker's MAC with another host's IP to intercept traffic in a MITM attack.
Which countermeasure best defends against ARP spoofing?
Answer: Dynamic ARP Inspection (DAI) on switches
Dynamic ARP Inspection validates ARP packets against trusted bindings to block spoofed entries.
What does a MAC flooding attack attempt to do to a switch?
Answer: Overflow the CAM table so the switch behaves like a hub
MAC flooding overflows the switch CAM table, forcing it to broadcast frames so the attacker can sniff them.
Which protocol is vulnerable to sniffing because it transmits credentials in cleartext?
Answer: Telnet
Telnet sends usernames and passwords in cleartext, making them easy to capture via sniffing.
What is the goal of a DHCP starvation attack?
Answer: Exhaust the DHCP pool so legitimate clients cannot get addresses
DHCP starvation floods the server with bogus requests to exhaust its address pool, denying service.
Which technique allows an attacker to monitor traffic on a switched network passively?
Answer: Port mirroring / SPAN port abuse
Abusing a port mirror or SPAN configuration copies traffic to the attacker's port for passive monitoring.
What is the primary defense against network sniffing of sensitive data?
Answer: Encrypting traffic with protocols like TLS/SSH
Encryption such as TLS or SSH renders captured packets unreadable, defeating sniffing of sensitive data.