A spear-phishing campaign against finance staff at city hall installs a malicious wireless profile that prefers an attacker-controlled SSID. How does this social-engineering outcome enable further WLAN compromise?
Select an answer to reveal the explanation.
Short Explanation
The phish did not smash the AP—it rewrote the laptop’s little black book of trusted Wi-Fi names. Next time the staff machine sees the attacker SSID, it walks right over for a MITM chat. Fix the profile and the people process, not just the radio firmware.
Full Explanation
Social engineering can change client configuration—malicious wireless profiles, rogue preferred networks, or disabled certificate checks—so victims prefer attacker infrastructure. That client-side trust manipulation sets up evil-twin or credential-harvest MITM without requiring a cracked enterprise PSK. Awareness, MDM/profile control, and validating EAP server certificates are complementary defenses.