CompTIA Security+ (SY0-701) — Question 131
Malware spread across a company's network after an employee visited a compromised industry blog. Which of the following best describes this type of attack?
Answer options
- A. Impersonation
- B. Disinformation
- C. Watering-hole
- D. Smishing
Correct answer: C
Explanation
This scenario is best described as a Watering-hole attack, where attackers compromise a website that is likely to be visited by the target group, leading to malware infection. The other options, such as Impersonation and Smishing, refer to different types of social engineering attacks and do not fit the context of a compromised website leading to malware spread.