A library guest Wi-Fi SSID is bridged into the same VLAN as staff workstations with no client isolation, allowing a visitor laptop to reach clerk file shares. Which threat vector best describes this condition?
Select an answer to reveal the explanation.
Short Explanation
Guest Wi-Fi that can see staff shares is an unsecure wireless / segmentation failure — visitors should not share the clerk VLAN. This is network attack surface, not BEC or a poisoned vendor update. Segment guests, enable isolation, and keep staff off the public SSID.
Full Explanation
Unsecure networks, including poorly segmented wireless, are listed attack surfaces because unauthorized clients can reach internal resources. Objective 2.2 covers wireless and network exposure separate from email fraud, memory corruption, or software supply-chain malware. Libraries and other civic sites should isolate guest SSIDs from staff VLANs and apply NAC where feasible.