exam questions

Exam SY0-601 All Questions

View all questions & answers for the SY0-601 exam

Exam SY0-601 topic 1 question 688 discussion

Actual exam question from CompTIA's SY0-601
Question #: 688
Topic #: 1
[All SY0-601 Questions]

Which of the following best describes a use case for a DNS sinkhole?

  • A. Attackers can see a DNS sinkhole as a highly valuable resource to identify a company's domain structure.
  • B. A DNS sinkhole can be used to draw employees away from known-good websites to malicious ones owned by the attacker.
  • C. A DNS sinkhole can be used to capture traffic to known-malicious domains used by attackers.
  • D. A DNS sinkhole can be set up to attract potential attackers away from a company's network resources.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
johnny3991t
Highly Voted 1 year, 2 months ago
This was on my exam. I picked c
upvoted 9 times
...
plopeup
Most Recent 9 months, 3 weeks ago
Selected Answer: B
It is B because a sinkhole redirects the users to a different site. Can be used by attackers and security. It is not C because C mentions capturing traffic, not redirection.
upvoted 1 times
JasonMunoz
9 months ago
A DNS sinkhole is specifically used to capture traffic to known-malicious domains. When a DNS sinkhole is in place, requests to malicious domains are redirected to a controlled server, preventing the malicious traffic from reaching its intended destination.
upvoted 1 times
...
...
Geronemo
12 months ago
Selected Answer: C
Here's why: A DNS sinkhole is a technique used to redirect DNS queries for malicious domains to a controlled server, typically a non-existent or "sinkhole" server, instead of the actual malicious server. This allows organizations to intercept and block traffic to known-malicious domains, preventing users from accessing malicious content or communicating with command-and-control servers operated by attackers.
upvoted 3 times
...
russian
1 year ago
Its C guys. B - DNS sinkhole doesnt redirect anything D - a honeypot attracts not DNS sinkhole
upvoted 3 times
...
ad61da2
1 year ago
Selected Answer: D
d is answer
upvoted 1 times
...
memodrums
1 year, 2 months ago
Both B and C are correct, is just how you use it.
upvoted 2 times
...
MortG7
1 year, 3 months ago
A DNS sinkhole does NOT ATTRACT any traffic...it captures and redirect to null. C
upvoted 3 times
...
Rowdy_47
1 year, 6 months ago
Selected Answer: C
This was my initial understanding of a sinkhole A DNS sinkhole, also known as a sinkhole server, Internet sinkhole, or Blackhole DNS[1] is a Domain Name System (DNS) server that has been configured to hand out non-routable addresses for a certain set of domain names. Computers that use the sinkhole fail to access the real site.[2] The higher up the DNS resolution chain the sinkhole is, the more requests will fail, because of the greater number of lower nameservers that in turn serve a greater number of clients. Some of the larger botnets have been made unusable by top-level domain sinkholes that span the entire Internet.[3] DNS Sinkholes are effective at detecting and blocking bots and other malicious traffic. DNS sinkholing is used to provide wrong DNS resolution and alternate the path of the users to different resources instead of the malicious or non-accessible content. A sinkhole is a way of redirecting malicious internet traffic so that it can be captured and analyzed by security analysts. Sinkholes are most often used to seize control of botnets by interrupting the DNS names of the botnet that is used by the malware. https://resources.infosecinstitute.com/topics/general-security/dns-sinkhole/
upvoted 3 times
...
Gwcan
1 year, 6 months ago
Selected Answer: C
C perfectly describes a DNS sinkhole.
upvoted 2 times
...
Hibiww
1 year, 6 months ago
Selected Answer: D
Answer is D
upvoted 3 times
Gwcan
1 year, 6 months ago
D is a honeypot, not a DNS sinkhole.
upvoted 12 times
...
...
jwoyer001
1 year, 6 months ago
Selected Answer: C
C for this one
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago