Objective 4.2CC

4.2 Understand network threats and attacks.

Objective 4.2 sits in Network Security, which carries 24% of the Certified in Cybersecurity exam. The questions below are original, written from the official objective title above, and each explanation cites the ISC2 page it rests on.

Objective title verbatim from the official objectives. ISC2 exam page

A worked example

Shown solved, with the whole explanation open: this is what every question here carries.

4-2Network SecurityEasy

What is phishing, at its core?

Electronically delivered social engineeringCorrect · your answerCorrect. The attack manipulates people, delivered electronically.
A software flaw in mail server daemonsThe mail server functions correctly; the deception rides on top of it.
A password database breach techniqueBreaching a credential store is a different technique entirely.
A wireless signal interception methodWireless interception is eavesdropping, the right answer for a sniffing question.

Correct.

Concept

Some attacks target software; phishing targets judgment, using electronic delivery to put a deceptive request in front of a person.

Why A

ATT&CK puts it plainly: all forms of phishing are electronically delivered social engineering, sent to gain access to victim systems.

#phishing#social-engineering

Now you: objective 4.2 questions

No account needed. The explanation opens when you answer.

Sample question 1 of 3

4-2Network SecurityModerate

A malicious email references your company's current projects and names its CFO. Which attack variant is this?

Sample question 2 of 3

4-2Network SecurityModerate

A user receives an email urging them to call a support number, where a voice directs them to install a remote access tool. Is this phishing?

Sample question 3 of 3

4-2Network SecurityModerate

A forged sender identity slips past your users and the automated filters alike. Which technique does that describe?

Full Certified in Cybersecurity question bank coming

We’re writing the complete bank from the official objectives right now. Leave your email and we’ll tell you when it ships, nothing else, ever.

Read the sources

These are the official pages the questions above cite. Reading them is studying the objective from the primary source, which is what the explanations point you toward anyway.

More objectives in Network Security