Which of the following would most likely be used by attackers to perform credential harvesting?
Choose an answer
Tap an option to check your answer.
Correct answer: Social engineering.
Why this is the answer
Social engineering is the most likely method for credential harvesting because it manipulates individuals into divulging sensitive information, such as usernames and passwords. Attackers use tactics like phishing, pretexting, or baiting to trick users into providing their credentials directly or entering them into fake login pages. Supply chain compromise involves tampering with products or services during their development or distribution, which is less direct for harvesting credentials from end-users. Third-party software could be exploited, but the initial compromise often involves social engineering to install it or gain access. A rainbow table is used for cracking hashed passwords, not for harvesting them directly from users.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed