312-49v10 question 556 discussion

View all Computer Hacking Forensic Investigator (CHFI-v10) Exam here
back to eccouncil forum

Question 556

Robert, a cloud architect, received a huge bill from the cloud service provider, which usually doesn't
happen. After analyzing the bill, he found that the cloud resource consumption was very high. He
then examined the cloud server and discovered that a malicious code was running on the server,
which was generating huge but harmless traffic from the server. This means that the server has been
compromised by an attacker with the sole intention to hurt the cloud customer financially. Which
attack is described in the above scenario?

  • A. XSS Attack
  • B. DDoS Attack (Distributed Denial of Service)
  • C. Man-in-the-cloud Attack
  • D. EDoS Attack (Economic Denial of Service)
Answer:

B

User Votes:
A
50%
B
50%
C
50%
D 1 votes
50%
Discussions
0 / 1000
ezengen2
3 months, 2 weeks ago

D is the correct answer

ezengen2
3 months, 2 weeks ago

From the text book itself:

Economic denial of service destroys the financial resources; in the worst case, this could lead to customer bankruptcy or other severe economic impact. If an attacker deploys a malicious service or executes malicious code on a cloud system that consumes a significant amount of computational power and storage from the cloud server, the legitimate account holder is liable for paying for such consumption unless the service provider finds the primary cause of CPU usage.