ITPEC IP April 2021 Question 41

Source exam: ITPEC IP April 2021Topic: Security

ITPEC IP April 2021 — Question 41 of 100

Social engineering exploits human psychology, trust, or carelessness to obtain confidential information or unauthorized access. Attackers may impersonate support staff, create urgency, observe a password being entered, or search discarded documents rather than directly defeating a technical control.

Answer (c)

Why not others:
- a DoS attack exhausts resources to disrupt availability

- SQL injection submits malicious database commands through application input

- a buffer overflow writes beyond an allocated memory boundary

Key rule: When the primary target is a person's behavior rather than software, the attack is social engineering.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.