Security Test Questions All Answered
Correct (2025-2026) Version.
Fatima has just learned that employees have tried to install their own wireless router in the
employee lounge. Why is installing this rogue AP a security vulnerability?
a. It allows an attacker to bypass network security configurations.
b. It requires the use of vulnerable wireless probes on all mobile devices.
c. It conflicts with other network firewalls and can cause them to become disabled.
d. It uses the weaker IEEE 80211i protocol. - Answer It allows an attacker to bypass network
security configurations.
A rogue AP is an unauthorized AP that allows an attacker to bypass many of the network
security configurations and opens the network and its users to attacks. For example, although
firewalls are typically used to restrict specific attacks from entering a network, an attacker who
can access the network through a rogue AP is behind the firewall.
Nyla is investigating a security incident in which the smartphone of the CEO was compromised
and confidential data was stolen. She suspects that it was an attack that used Bluetooth. Which
attack would this be?
a. Blueswiping
b. Bluejacking
c. Bluesnarfing
d. Bluestealing - Answer Bluesnarfing
Bluesnarfing is an attack that accesses unauthorized information from a wireless device through
a Bluetooth connection. In a bluesnarfing attack, the attacker copies emails, calendars, contact
lists, cell phone pictures, or videos by connecting to the Bluetooth device without the owner's
knowledge or permission.
Zariah is writing an email to an employee about a wireless attack that is designed to capture the
wireless transmissions from legitimate users. Which type of attack is Zariah describing?
a. Bluetooth grabber
b. Rogue access point
, An evil twin is an AP that is set up by an attacker. This AP is designed to mimic an authorized AP,
so a user's mobile device like a laptop or tablet will unknowingly connect to this evil twin
instead. Attackers can then capture the transmissions from users to the evil twin AP.
Which of these is NOT a risk when a home wireless router is not securely configured?
a. Malware can be injected into a computer connected to the WLAN.
b. Usernames, passwords, credit card numbers, and other information sent over the WLAN
could be captured by an attacker.
c. Wireless endpoints must be manually approved to connect to the WLAN.
d. An attacker can steal data from any folder with file sharing enabled. - Answer Wireless
endpoints must be manually approved to connect to the WLAN.
When a wireless router is not securely configured, it does not require that endpoints be
manually approved to connect to the network.
Which of these is NOT a type of wireless AP probe?
a. Dedicated probe
b. AP probe
c. Wireless device probe
d. WNIC probe - Answer WNIC probe
This is fictitious and does not exist.
Which of these is a vulnerability of MAC address filtering in a WLAN?
a. The user must enter the MAC.
b. APs use IP addresses instead of MACs.
c. MAC addresses are initially exchanged unencrypted.
d. Not all operating systems support MACs. - Answer MAC addresses are initially exchanged
unencrypted.
MAC addresses are initially exchanged between wireless devices and the AP in an unencrypted
format. Attackers monitoring the airwaves could easily see the MAC address of an approved
device and then substitute it on their own device.