A laptop is found associated with a neighbouring business's access point rather than its own. Which threat is present if the neighbouring access point was deliberately configured to appear legitimate?
A laptop is found associated with a neighbouring business's access point rather than its own. Which threat is present if the neighbouring access point was deliberately configured to appear legitimate?
Answer
malicious association
Options - A. malicious association - B. accidental association - C. network injection - D. identity theft by MAC spoofing Why - A. Correct. A device set up to impersonate a legitimate AP — the evil twin — harvests credentials and then uses them to reach the wired network through a real AP. - B. The mirror case, and the reason this question exists: an unintentional lock-on caused by overlapping ranges produces exactly the same symptom with no attacker behind it. The axis is intent. - C. Network injection targets APs that accept unfiltered routing or management messages — bogus reconfiguration commands, not a fake AP luring clients. - D. MAC spoofing forges an address to impersonate an authorised *station*. Here it is the access point that is being impersonated.
Stallings & Brown, Computer Security 5e, ch24 §24.1–24.3