exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 748 discussion

Actual exam question from CompTIA's SY0-601
Question #: 748
Topic #: 1
[All SY0-601 Questions]

Which of the following are common VoIP-associated vulnerabilities? (Choose two).

  • A. SPIM
  • B. Vishing
  • C. VLAN hopping
  • D. Phishing
  • E. DHCP snooping
  • F. Tailgating
Show Suggested Answer Hide Answer
Suggested Answer: AB 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
wakkaking14
Highly Voted 1 year, 7 months ago
Selected Answer: AB
Vishing SPIM (Spam over Internet Messaging) poses a threat to VoIP systems by consuming bandwidth, diverting resources, and potentially causing denial of service attacks. The influx of SPIM messages can degrade the quality of VoIP calls, overload servers, and serve as a platform for social engineering attacks, jeopardizing the security of VoIP users. To mitigate these risks, organizations should implement spam filters, intrusion detection systems, and regular software updates while also educating users to recognize and avoid potential threats associated with SPIM.
upvoted 12 times
...
EMP00000000
Highly Voted 1 year, 7 months ago
Selected Answer: AB
This is another repeat question but with slightly different options listed. https://www.examtopics.com/discussions/comptia/view/78835-exam-sy0-601-topic-1-question-23-discussion/ SPIM and VISHING are listed as the answer on both.
upvoted 8 times
...
JBSPLAT
Most Recent 1 year, 1 month ago
Selected Answer: BC
SPIT is the specific terminology for Spam Over Internet Telephony. SPIM is not a term that is usually used to cover SPIT. VLAN Hopping, on the other hand, is a concern that I have literally worked on in multiple real-world scenarios. I am aware most of you saying AB are relying on "well, those are the answer choices" or the fact that SPIM is a general DDoS method. But there is no merit at all to choosing it over the much more significant, real risk that is VLAN Hopping due to misconfigured VLAN segmentation.
upvoted 2 times
...
Imjusthere00
1 year, 3 months ago
Selected Answer: BC
I’m going with BC
upvoted 3 times
...
TheNickleBacker
1 year, 3 months ago
Vlan hopping made more sense than SPIM initially but upon making a simple google search "can you send IMs over VOIP" and being presented with a multitude of VOIP software options with IM included, the answer indeed must be SPIM and Vishing. SMS messages are commonly sent over VOIP.
upvoted 2 times
...
fryderyk
1 year, 3 months ago
Selected Answer: BC
For those not convinced to Hopping (I was), one of many resources on to voip vlan hopping: https://community.broadcom.com/symantecenterprise/viewdocument/voip-hopping-a-method-of-testing?CommunityKey=1ecf5f55-9545-44d6-b0f4-4e4a7f5f5e68 The other one just must be Vishing.
upvoted 2 times
...
TM78
1 year, 4 months ago
Selected Answer: BC
This is a question for those that have chosen SPIM - Spam Over Instant Message. How does IM relate to VoIP? How can an attacker IM a VoIP? Maybe I’m missing something?
upvoted 2 times
...
kewokil120
1 year, 4 months ago
Selected Answer: BC
Phones can have access to 2 vlans as they normally tag their voice vlan and if a pc goes through a phone it will leave the PC traffic untagged for the data network. CDP/LLDP can also advertise there voice and data vlan to phone enabled ports.
upvoted 4 times
...
Yomzie
1 year, 5 months ago
There you have it: the answers are option B and C. See my previous post below; and check out the referenced link in this one as well. https://community.broadcom.com/symantecenterprise/viewdocument/voip-hopping-a-method-of-testing?CommunityKey=1ecf5f55-9545-44d6-b0f4-4e4a7f5f5e68&tab=librarydocuments#:~:text=The%20VoIP%20Hop%20can%20allow,against%20the%20IP%20Phone%20network.
upvoted 1 times
...
Yomzie
1 year, 5 months ago
This is for reference:: https://fitsmallbusiness.com/voip-security-threats/ Only one of the choices (Vishing), is a very clear option. Of the others, SPIM would have been right if it was SPIT (Spam over IP Technology). VLAN Hopping is defined (in Wikipedia) as: a computer security exploit, a method of attacking networked resources on a virtual LAN (VLAN). The basic concept behind all VLAN hopping attacks is for an attacking host on a VLAN to gain access to traffic on other VLANs that would normally not be accessible. VoIP phones are vLAN resources as well; but none of the other choices make ANY sense.
upvoted 2 times
...
Titanbug
1 year, 5 months ago
Selected Answer: BC
Vishing and VLAN hopping are the only attacks in the options provided which can directly exploit VoIP vulnerabilities.
upvoted 1 times
...
MortG7
1 year, 5 months ago
B. Vishing C. VLAN hopping If it were SPIT and not SPIM, i would go with that. Remember that an IP phone is a network device on a designated voice vlan..I know the answer is not ideal, but as I always say, best of the worst. Also phishing in voip is call vishing, so it is redundant...and on that note, FU Comptia for these stupid choices.
upvoted 2 times
...
psowrong
1 year, 5 months ago
Selected Answer: BD
Phishing also occurs through Vishing as the question entails. SPIM is through message. --x
upvoted 1 times
...
Made100
1 year, 6 months ago
Might be A and C due to VLAN hopping meaning to ease drop on conversations But I know one of the answers are B so I'm confused...
upvoted 2 times
...
kong345
1 year, 7 months ago
Selected Answer: AB
Im thinking AB
upvoted 3 times
...
ComPCertOn
1 year, 7 months ago
Selected Answer: BD
I would still go with Vshing and Phishing.
upvoted 3 times
Obiwan123
1 year, 7 months ago
Any sensible person would know it cant be PHISHING
upvoted 11 times
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...