header bg

Scan QR code or get instant email to install app

Question:

You work as a network security administrator for a bank. You find that an attacker has exploited a flaw in OpenSSL and forced some connections to move to a weak cipher suite version of TLS, which the attacker could breach. What type of attack was this?

A Downgrade attack.
explanation

Downgrade attacks seek to make a Transport Layer Security (TLS) connection use a weaker cipher version, thus allowing the attacker to more easily break the encryption and read the protected data. In a disassociation attack, the attacker attempts to force the victim into disassociating from a resource. Session hijacking is when the attacker takes over an authenticated session. Brute-force attempts every possible random combination to get the password or encryption key.

Related Information

Comments

Leave a Reply

Your email address will not be published. Required fields are marked *

*