ITPEC IP April 2024 Question 41
ITPEC IP April 2024 — Question 41 of 100
Phishing uses a deceptive message and fraudulent site to trick a person into revealing credentials. In option (b), the attacker impersonates a financial institution, creates urgency or trust through e-mail, and directs the recipient to a false login page. Information entered there, such as a password, goes to the attacker.
Answer (b)
Why not others:
- (a) describes remote control of an already infected bot or compromised PC
- (c) describes a dictionary attack that guesses passwords from likely words and strings
- (d) describes a distributed denial-of-service attack that overwhelms a server with traffic
Key rule: Phishing is social engineering by impersonation: it induces the victim to visit a fake destination, disclose secrets, send money, or install malware.
AI-generated — may contain errors
The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.
This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.