312-50v10 Exam Question 156
_________ is a set of extensions to DNS that provide to DNS clients (resolvers) origin authentication of DNS data to reduce the threat of DNS poisoning, spoofing, and similar attacks types.
312-50v10 Exam Question 157
The following is an entry captured by a network IDS. You are assigned the task of analyzing this entry. You notice the value 0x90, which is the most common NOOP instruction for the Intel processor. You figure that the attacker is attempting a buffer overflow attack.
You also notice "/bin/sh" in the ASCII part of the output.
As an analyst what would you conclude about the attack?

You also notice "/bin/sh" in the ASCII part of the output.
As an analyst what would you conclude about the attack?

312-50v10 Exam Question 158
Scenario: 1. Victim opens the attacker's web site.
2. Attacker sets up a web site which contains interesting and attractive content like 'Do you want to make S100 In a day?',
3. Victim clicks to the interesting and attractive content url.
4- Attacker creates a transparent iframe' in front of the url which victim attempt to click, so victim thinks that he/she clicks to the 'Do you want to make $1000 in a day?' url but actually he/sne clicks to the content or url that exists in the transparent iframe' which is setup by the attacker.
What is the name of the attack which is mentioned in the scenario?
2. Attacker sets up a web site which contains interesting and attractive content like 'Do you want to make S100 In a day?',
3. Victim clicks to the interesting and attractive content url.
4- Attacker creates a transparent iframe' in front of the url which victim attempt to click, so victim thinks that he/she clicks to the 'Do you want to make $1000 in a day?' url but actually he/sne clicks to the content or url that exists in the transparent iframe' which is setup by the attacker.
What is the name of the attack which is mentioned in the scenario?
312-50v10 Exam Question 159
An attacker is trying to redirect the traffic of a small office. That office is using their own mail server, DNS
server and NTP server because of the importance of their job. The attacker gain access to the DNS server
and redirect the direction www.google.com to his own IP address. Now when the employees of the office
wants to go to Google they are being redirected to the attacker machine. What is the name of this kind of
attack?
server and NTP server because of the importance of their job. The attacker gain access to the DNS server
and redirect the direction www.google.com to his own IP address. Now when the employees of the office
wants to go to Google they are being redirected to the attacker machine. What is the name of this kind of
attack?
312-50v10 Exam Question 160
You just set up a security system in your network. In what kind of system would you find the following string of characters used as a rule within its configuration?
alert tcp any any -> 192.168.100.0/24 21 (msg: "FTP on the network!";)
alert tcp any any -> 192.168.100.0/24 21 (msg: "FTP on the network!";)
