Threats & AttacksQuestion 3 of 100
A user reports that their credentials worked on a fake login page that looked identical to the corporate portal. Which attack most likely occurred?
a.SQL injection
b.Buffer overflow
c.Phishing
d.Privilege escalation
Explanation
Phishing lures users to fraudulent pages that harvest credentials by mimicking legitimate sites. The cloned portal is the classic delivery mechanism. User training and multifactor authentication reduce the impact of harvested passwords.
Practice all 100 questions free — no signup required.
Related questions on this topic
- An attacker sends an email that appears to come from the company CEO, urgently asking the finance team to wire funds to a new vendor. What type of social engineering attack is this?
- Which malware type encrypts a victim's files and demands payment for the decryption key?
- Which term describes a previously unknown software vulnerability for which no patch yet exists?
- An attacker overwhelms a web server with traffic from thousands of compromised devices, making it unavailable. What is this called?
- Which type of threat actor is typically well-funded, highly skilled, and motivated by espionage on behalf of a government?
- A disgruntled employee copies confidential designs to a USB drive before resigning. This is an example of what threat?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against CompTIA Security+ (SY0-701) · How we review