Cisco Certified Support Technician (CCST) CybersecuritySecurity PrinciplesMedium

A cybersecurity analyst is investigating a report of unusual network activity, including numerous failed login attempts to a critical server from various IP addresses. The analyst suspects an attacker is systematically trying common passwords. What type of attack is most likely occurring?

  1. ASQL Injection
  2. BDenial of Service (DoS)
  3. CPhishing
  4. DBrute-force Attack
Show answer & explanation

Correct answer: D. Brute-force Attack

A brute-force attack involves systematically trying every possible combination of characters until the correct password is found. The scenario describes numerous failed login attempts from various IP addresses, which is characteristic of this method.

Why the other options are wrong

  • A. SQL Injection targets databases through web application input, not login screens with common passwords.
  • B. A DoS attack aims to make a service unavailable, not necessarily to gain unauthorized access through guessing passwords.
  • C. Phishing involves tricking users into revealing credentials, not directly attempting logins.

Brute-force Attack

A brute-force attack is a trial-and-error method used to obtain information such as user passwords or personal identification numbers (PINs). It involves exhaustively trying every possible combination until the correct one is found.

  • Attempts all possible combinations.
  • Can be time-consuming but effective.
  • Often targets weak passwords or login mechanisms.

Memory trick: Brute-force is like trying every key on a keychain until one fits.

More Security Principles questions