CompTIA Security+ Exam: Understanding Attackers and their Actions

Actor in an Attack Against a Corporate Login Page

Prev Question Next Question

Question

An actor downloads and runs a program against a corporate login page.

The program imports a list of usernames and passwords, looking for a successful attempt.

Which of the following terms BEST describes the actor in this situation?

Answers

Explanations

Click on the arrows to vote for the correct answer

A. B. C. D.

A.

The actor in this situation is using an automated tool to attempt to gain unauthorized access to a corporate login page. The fact that the tool imports a list of usernames and passwords indicates that the actor is using a brute-force attack, which involves trying many different username and password combinations until one works.

Based on this description, the term that best describes the actor in this situation is "script kiddie." A script kiddie is someone who uses pre-written tools or scripts to launch attacks, rather than creating their own tools or using more advanced techniques. Script kiddies typically have limited technical skills and rely on easy-to-use tools that require little or no coding ability.

Hacktivists, on the other hand, are individuals or groups who use hacking techniques to promote a political or social agenda. Cryptologists are experts in cryptography, which is the science of creating and breaking codes. Security auditors are professionals who are hired to assess the security of an organization's systems and infrastructure, usually to identify and mitigate potential vulnerabilities.

In summary, given the description of the situation, the best term to describe the actor is a "script kiddie."