PrepAway - Latest Free Exam Questions & Answers

What attack involves the perpetrator sending spoofed pa…

What attack involves the perpetrator sending spoofed packet(s) which contains the same destination and
source IP address as the remote host, the same port for the source and destination, having the SYN flag, and
targeting any open ports that are open on the remote host?

PrepAway - Latest Free Exam Questions & Answers

A.
Boink attack

B.
Land attack

C.
Teardrop attack

D.
Smurf attack

Explanation:
A land (Local Area Network Denial) attack involves sending a spoofed TCP SYN packet (connection initiation)
with the target host’s IP address to an open port as both source and destination. This causes the machine to
reply to itself continuously.
Incorrect Answers:
A: The Boink attack manipulates a field in TCP/IP packets, called a fragment offset. This field tells a computer
how to reconstruct a packet that was broken up (fragmented) because it was too big to transmit in a whole
piece. By manipulating this number, the Boink attack causes the target machine to reassemble a packet that is
much too big to be reassembled. This causes the target computer to crash.
C: A teardrop attack is a denial-of-service (DoS) attack that involves sending fragmented packets to a target
machine.
D: The Smurf Attack is a distributed denial-of-service attack in which large numbers of Internet Control
Message Protocol (ICMP) packets with the intended victim’s spoofed source IP are broadcast to a computer
network using an IP Broadcast address.

Harris, Shon, All In One CISSP Exam Guide, 6th Edition, McGraw-Hill, New York, 2013, p. 257


Leave a Reply