CompTIA A+ Core 2 (220-1202)SecurityHard

An IT manager is reviewing security logs and notices a high volume of failed login attempts for several user accounts on the company's external-facing web server. These attempts are occurring rapidly from various IP addresses around the world, systematically trying common usernames and password combinations. What type of attack is MOST likely occurring?

  1. ABrute-force
  2. BCross-Site Scripting (XSS)
  3. CSQL Injection
  4. DDenial-of-Service (DoS)
Show answer & explanation

Correct answer: A. Brute-force

A brute-force attack involves an attacker systematically trying many password attempts, often using automated tools and dictionaries, to guess login credentials. The description of 'rapidly from various IP addresses' and 'systematically trying common usernames and password combinations' perfectly matches the characteristics of a brute-force attack.

Why the other options are wrong

  • B. XSS attacks inject malicious scripts into web pages viewed by other users.
  • C. SQL injection exploits vulnerabilities in database queries to gain unauthorized access or manipulate data.
  • D. DoS attacks aim to make a service unavailable by overwhelming it with traffic.

Brute-force Attack

A trial-and-error method used by attackers to guess login information, encryption keys, or find hidden web pages by systematically trying all possible combinations.

  • Often automated using specialized software.
  • Can target passwords, PINs, or encryption keys.
  • Mitigated by strong passwords, account lockout policies, and Multi-Factor Authentication (MFA).

Memory trick: Guessing game for passwords is a brute-force attack.

More Security questions