exam questions

Exam CAS-004 All Questions

View all questions & answers for the CAS-004 exam

Exam CAS-004 topic 1 question 409 discussion

Actual exam question from CompTIA's CAS-004
Question #: 409
Topic #: 1
[All CAS-004 Questions]

An ISP is receiving reports from a portion of its customers who state that typosquatting is occurring when they type in a portion of the URL for the ISP’s website. The reports state that customers are being directed to an advertisement website that is asking for personal information. The security team has verified the DNS system is returning proper results and has no known IOCs. Which of the following should the security team implement to best mitigate this situation?

  • A. DNSSEC
  • B. DNS filtering
  • C. Multifactor authentication
  • D. Self-signed certificates
  • E. Revocation of compromised certificates
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
isaphiltrick
Highly Voted 10 months, 2 weeks ago
Selected Answer: B
DNS filtering can be used to prevent users from accessing malicious or unintended websites by blocking certain domains at the DNS level. In the case of typosquatting, where users are being directed to an advertisement website asking for personal information, DNS filtering can help by blocking access to these known malicious domains. This would ensure that even if users mistype a URL, they will not be directed to a harmful site.
upvoted 5 times
...
AGUDLP
Most Recent 10 months, 1 week ago
Selected Answer: A
The best option to mitigate this situation would be A. DNSSEC (Domain Name System Security Extensions). DNSSEC provides authentication and integrity to the DNS system, helping to protect against certain types of attacks such as DNS spoofing. It can help ensure that the website’s DNS entries are valid and haven’t been tampered with, which can prevent users from being redirected to malicious sites due to typosquatting.
upvoted 2 times
HereToStudy
7 months, 3 weeks ago
Typosquatting is not a redirect. The user typed the wrong domain.
upvoted 2 times
...
...
cf13076
1 year ago
Selected Answer: B
B. DNS filtering In this situation, where customers are being redirected to an advertisement website when typing in the URL for the ISP's website, implementing DNS filtering would be the most effective way to mitigate the issue. DNS filtering can be used to block access to malicious or unwanted websites by filtering DNS requests based on predefined criteria, such as known malicious domains or typosquatting domains. By implementing DNS filtering, the ISP could prevent customers from being redirected to unauthorized websites and protect their personal information.
upvoted 4 times
...
saucehozz
1 year ago
Selected Answer: B
B protects it's internal customers
upvoted 4 times
...
c0ffad1
1 year, 1 month ago
Selected Answer: B
DNS filtering. This measure will prevent users from accidentally navigating to malicious typo-squatting sites by either blocking those sites directly or redirecting users to the correct or a safe site. This proactive approach addresses the issue at the DNS level, where the problem of incorrect URL resolution occurs, making it the most effective solution in this scenario.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago