An attack type that entices a victim into using or opening a removable device, document, image, or program that conceals malware is called?

Prepare for the Information Security Principles and Frameworks Test. Enhance your understanding with detailed questions, hints, and explanations. Ace your exam with confidence!

Multiple Choice

An attack type that entices a victim into using or opening a removable device, document, image, or program that conceals malware is called?

Explanation:
Social engineering that relies on a tempting object to prompt action is described as a lure. The attacker presents something appealing—like a removable device, document, image, or program—that invites the victim to use or open it. When the victim acts on that lure, malware is concealed inside, enabling the attack. This captures the tactic of baiting: using a tempting lure to provoke a risky action. The other terms describe more specific or identity-based tactics (phishing involves deceptive messages; pretexting creates a false scenario; impersonation mimics someone else), but the scenario centers on enticing the user with a lure to unleash malware.

Social engineering that relies on a tempting object to prompt action is described as a lure. The attacker presents something appealing—like a removable device, document, image, or program—that invites the victim to use or open it. When the victim acts on that lure, malware is concealed inside, enabling the attack. This captures the tactic of baiting: using a tempting lure to provoke a risky action. The other terms describe more specific or identity-based tactics (phishing involves deceptive messages; pretexting creates a false scenario; impersonation mimics someone else), but the scenario centers on enticing the user with a lure to unleash malware.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy