~/ learn/ comp-400/ cards/ Why radio is different: wireless threats and the 802.11 architecture
1 of 7

A laptop is found associated with a neighbouring business's access point rather than its own. Which threat is present if the neighbouring access point was deliberately configured to appear legitimate?

A laptop is found associated with a neighbouring business's access point rather than its own. Which threat is present if the neighbouring access point was deliberately configured to appear legitimate?

Answer

malicious association

Options - A. malicious association - B. accidental association - C. network injection - D. identity theft by MAC spoofing Why - A. Correct. A device set up to impersonate a legitimate AP — the evil twin — harvests credentials and then uses them to reach the wired network through a real AP. - B. The mirror case, and the reason this question exists: an unintentional lock-on caused by overlapping ranges produces exactly the same symptom with no attacker behind it. The axis is intent. - C. Network injection targets APs that accept unfiltered routing or management messages — bogus reconfiguration commands, not a fake AP luring clients. - D. MAC spoofing forges an address to impersonate an authorised *station*. Here it is the access point that is being impersonated.

Stallings & Brown, Computer Security 5e, ch24 §24.1–24.3

space flip · ← → navigate · esc to exit
NORMAL ~/memra/library/5d3c9f53-5ba1-46d4-b44b-32f076377327/flashcard utf-8 LF