Which of the following techniques would attract the attention of a malicious attacker in an insider threat scenario?
Choose an answer
Tap an option to check your answer.
Correct answer: Creating a false text file in /docs/salaries.
Why this is the answer
Creating a false text file in a sensitive directory like /docs/salaries is a classic honeypot technique. This file would be designed to look enticing to an attacker, and any attempt to access or modify it would trigger an alert, indicating potential malicious activity. The other options involve actual vulnerabilities or backdoors that an attacker would create or exploit, not something that would attract them. Setting weak passwords in /etc/shadow makes the system easier to compromise, but it doesn't lure an attacker. Scheduling vulnerable jobs in /etc/crontab creates an attack vector. Adding a fake account to /etc/passwd is a backdoor for persistence, not an attraction mechanism.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed