MODULE 9 EXAM QUESTIONS AND
ANSWERS 100% CORRECT
, Mobile platform attack vectors make mobile phone platforms susceptible to malicious
attacks both from the network and upon physical compromise. - ANSWER True
David, a professional hacker, was hired to attack mobile devices owned by an
organization. He broadcasted a well-crafted text message with a malicious link to all the
organization's mobile numbers to collect their personal and financial information. -
ANSWER SMiShing
SMiShing - ANSWER SMS phishing (also known as SMiShing) is a type of phishing
fraud in which an attacker uses SMS to send text messages containing deceptive links
of malicious websites or telephone numbers to a victim.
Click-jacking - ANSWER Clickjacking, also known as a user interface redress attack, is
a malicious technique used to trick web users into clicking something different from
what they think they are clicking.
Framing - ANSWER Buffer overflow is an abnormality whereby a program, while writing
data to a buffer, surfeits the intended limit and overwrites the adjacent memory.
Simjacker - ANSWER Simjacker is a vulnerability associated with a SIM card's S@T
browser (SIMalliance Toolbox Browser), a pre-installed software incorporated in SIM
cards to provide a set of instructions.
Sam, a professional hacker, was assigned to attack Bluetooth-enabled devices at a
coffee shop. He employed a process to compromise the Bluetooth devices that are set
to discoverable mode, then sniffed sensitive data from targeted devices. - ANSWER
Bluebugging
Bluebugging - ANSWER Setting a mobile device's Bluetooth connection to "open" or the
"discovery" mode and turning on the automatic Wi-Fi connection capability, particularly
in public places, pose significant risks to mobile devices.
Man-in-the-mobile - ANSWER An attacker implants malicious code into the victim's
mobile device to bypass password verification systems that send one-time passwords
(OTPs) via SMS or voice calls. Thereafter, the malware relays the gathered information
to the attacker.