CWS WLAN Security Concepts Flashcards
7 cards from real CWS practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 CWS WLAN Security Concepts flashcards as text
In WPA2-Enterprise, what cryptographic protocol protects the data frame payload over the air?
Answer: CCMP based on AES in counter mode with CBC-MAC
WPA2-Enterprise mandates CCMP (Counter Mode CBC-MAC Protocol) using AES-128 to provide both confidentiality and data integrity for wireless frames.
A security analyst finds clients connecting to an AP with a stronger signal but no certificate validation prompt. What attack is most likely occurring?
Answer: Evil twin AP with no server cert validation by clients
An evil twin AP can impersonate the legitimate AP and, if clients do not validate server certificates, successfully intercept EAP credentials or traffic.
What is the role of the Pairwise Master Key (PMK) in WPA2 authentication?
Answer: It serves as the seed from which the PTK is derived via the four-way handshake
The PMK is derived from the PSK or EAP authentication and is used during the four-way handshake to derive the Pairwise Transient Key (PTK) used for encrypting data.
Which WLAN attack specifically targets the WPS PIN feature?
Answer: Pixie Dust attack
The Pixie Dust attack exploits weak nonce generation in certain WPS implementations to recover the WPS PIN and subsequently the WPA2 passphrase offline.
In a CWS context, what does the term 'RF jamming' describe as a wireless threat?
Answer: Deliberate interference on the wireless spectrum to cause a denial of service
RF jamming is a physical-layer DoS attack where a device transmits interference signals on the same frequency band, disrupting legitimate wireless communications.
Which feature of WPA3-Personal provides protection even if the Wi-Fi password is later compromised?
Answer: Forward secrecy through SAE
WPA3-Personal's SAE handshake generates unique session keys, so compromising the password after the fact cannot decrypt previously captured traffic.
What is Opportunistic Wireless Encryption (OWE) designed to protect?
Answer: Open networks by providing unauthenticated but encrypted connections
OWE (defined in 802.11-2016 and used in Wi-Fi Enhanced Open) encrypts open network traffic without requiring a password, protecting against passive eavesdropping.