ITPEC IP April 2023 Question 37

Source exam: ITPEC IP April 2023Topic: Security

ITPEC IP April 2023 — Question 37 of 100

A denial-of-service attack directly interrupts or degrades the server's services. The attacker exhausts bandwidth, connections, CPU, memory, or application capacity with traffic or expensive requests so legitimate users cannot obtain timely service. The primary security property harmed is availability.

Answer (d)

Why not others:
- (a) decrypting protected data would be a confidentiality failure, not the defining result of DoS

- (b) changing an administrator password requires account compromise or unauthorized modification

- (c) virus infection is malware compromise and is not what defines denial of service

Key rule: DoS targets availability by preventing legitimate use; DDoS produces the attack from many distributed sources.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.