Workers near city hall associate to a fake access point that advertises the corporate municipal SSID and presents a look-alike login to harvest credentials. Which attack pattern best describes this?
Select an answer to reveal the explanation.
Short Explanation
The fake AP is a doppelgänger wearing the city’s name badge. Clients trust the familiar SSID, then hand secrets to the wrong radio—that is evil-twin MITM territory. Noise jamming alone does not harvest logins.
Full Explanation
Evil-twin and similar MITM WLAN attacks advertise a trusted SSID (often with stronger signal) to lure associations and then intercept traffic or present fraudulent authentication portals. The goal is credential harvest or session manipulation rather than mere RF denial. Detection and client-side server-certificate validation for 802.1X are key related defenses, but the stem asks for correct attack identification.