ITPEC IP April 2023 Question 36
ITPEC IP April 2023 — Question 36 of 100
Phishing uses deceptive messages to lead victims to a fake or impersonated site and steal credentials or other personal information. The attacker imitates a trusted organization and creates urgency or another pretext so the recipient clicks a link, opens an attachment, or submits sensitive data.
Answer (b)
Why not others:
- (a) describes remote control of an infected host as a bot or backdoor
- (c) describes cross-site scripting, where untrusted script executes in a web page
- (d) describes spyware or another resident information-stealing program
Key rule: Phishing is social engineering through impersonation; it tricks the person into disclosing information or taking a harmful action.
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.