Question 121

While evaluating a smart card implementation, a security analyst observes that an attacker is measuring fluctuations in power consumption and timing variations during encryption operations on the chip. The attacker uses this information to infer secret keys used within the device. What type of exploitation is being carried out?
  • Question 122

    At a fast-growing mobile gaming company in Seoul, South Korea, cybersecurity analyst Ji-Hoon Park was investigating an unusual spike in outbound traffic originating from thousands of Android devices used by players worldwide. The traffic appeared highly coordinated and was targeting a third-party payment gateway integrated into the platform.
    During the investigation, it was discovered that many affected users had recently installed a widely distributed version of a popular game from unofficial application sources. The application functioned normally but included additional hidden components that executed background network operations without user awareness.
    Further analysis revealed that the affected devices were consistently generating traffic patterns aligned in timing and destination, despite being geographically distributed.
    Which technique most accurately describes how these devices were being leveraged to launch the attack?
  • Question 123

    While performing a vulnerability assessment for XYZ Corporation, you discover that several key systems are regularly interacting with unidentified external entities. These interactions often involve data transfers, both incoming and outgoing. While some of these might be legitimate, the nature and volume of this unmonitored traffic raise concerns about potential data exfiltration or malware introduction. Given the ambiguous nature of these interactions and the high stakes involved, which strategy would most directly identify and mitigate the vulnerabilities associated with these unsanctioned exchanges?
  • Question 124

    You have been asked to perform a penetration test for a local company. You have had several meetings with the client and are now almost ready to begin the assessment. Which of the following is the document that would contain verbiage which describes what type of testing is allowed and when you will perform testing and limits your liabilities as a penetration tester?
  • Question 125

    In Denver, Colorado, ethical hacker Sophia Nguyen is hired by Rocky Mountain Insurance to assess the effectiveness of their network security controls. During her penetration test, she attempts to evade the company's firewall by fragmenting malicious packets to avoid detection.
    The IT team, aware of such techniques, has implemented a security measure to analyze packet contents beyond standard headers. Sophia's efforts are thwarted as the system identifies and blocks her fragmented packets. Which security measure is the IT team most likely using to counter Sophia's firewall evasion attempt?