Options

Wrong Answer

fibulatorfibulator Member Posts: 1 ■□□□□□□□□□
There is a wrong answer in the "35 question" practice exam on this site.

"16. What is the term used to describe the type of attack where a DNS server accepts and uses incorrect information from a host that does not have authority to supply that information?
a. DNS cache corruption
b. DNS cache poisoning
c. DNS caching
d. DNS spoofing
e. Name server smurf
f. Name server teardrop

Answer(s): d. DNS spoofing

Your Answer(s): b. DNS cache poisoning

Explanation:
A spoof is when a DNS server accepts and uses incorrect information form a host that has no authority to give that information."

The Correct answer is DNS Poisoning: The question provides the textbook definition of Poisoning.

DNS Spoofing is "Setting up a Machine that pretends to be a DNS server"

Comments

  • Options
    changlinnchanglinn Member Posts: 42 ■■■□□□□□□□
    yeah you are spot on, unfortunately the people who write the practice tests are only human... it is their editors that should be shot :P
    A+, C|EH, CISSP, CISM, CRISC, GSTRT, MCSA:Messaging, MCSE:Security
    "Brain does not meet certification requirements, please install more certifications" Me
    Currently Studying: Cyber Security masters and ISC2 CCSP.
    Security blog; http://security.morganstorey.com
  • Options
    PashPash Member Posts: 1,600 ■■■■■□□□□□
    You are indeed correct. There are several microsoft technet links that define examples of DNS cache poisoning. Funnily enough, as part of a DNS hardening recommendation on several security audits I have seen recently...is to disable recursion on a MS DNS server. This simply isnt viable on most DNS implementations and if you are using forwarders, totally not possible.

    Good subject this one!
    DevOps Engineer and Security Champion. https://blog.pash.by - I am trying to find my writing style, so please bear with me.
Sign In or Register to comment.