ITPEC FE Morning October 2018 Question 38
ITPEC FE Morning October 2018 — Question 38 of 80
Spoofing Attack — an attack where the attacker impersonates another person or entity
Correct answer: c) Masquerading as a superior person from an information systems department, or a customer is a classic spoofing attack — the attacker pretends to be someone they are not to gain trust or access.
Why not the others:
- a) Encrypting data and demanding ransom = ransomware, not spoofing
- b) Looking at someone's keyboard while they enter a password = shoulder surfing, a physical observation attack
- d) Sending excessive requests from multiple computers = DDoS (Distributed Denial of Service), an availability attack
Key rule: Spoofing = impersonation/masquerading. The attacker forges their identity (IP spoofing, email spoofing, caller ID spoofing, or social engineering by pretending to be an authority figure).
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official FE past-paper collection or Report an issue.