CompTIA Security+ (SY0-501) — Question 422

A help desk technician receives a phone call from an individual claiming to be an employee of the organization and requesting assistance to access a locked account. The help desk technician asks the individual to provide proof of identity before access can be granted. Which of the following types of attack is the caller performing?

Answer options

Correct answer: C

Explanation

The caller is performing impersonation by pretending to be an employee to gain unauthorized access to the account. Phishing typically involves deceptive emails or messages rather than phone calls, while shoulder surfing relates to observing someone’s confidential information. Dumpster diving involves rummaging through trash for sensitive information, which is not applicable in this scenario.