CompTIA Security Plus Mock Test Q346

Which of the following is an attack vector that can cause extensive physical damage to a datacenter without physical access?

A. CCTV system access
B. Dial-up access
C. Changing environmental controls
D. Ping of death


Correct Answer: C
Section: Compliance and Operational Security

Explanation:
Environmental systems include heating, air conditioning, humidity control, fire suppression, and power systems. All of these functions are critical to a well-designed physical plant. A computer room will typically require full-time environmental control. Changing any of these controls (when it was set to its optimum values) will result in damage.

Incorrect Answers:
A: Closed Circuit TV (CCTV) surveillance can help lessen the success of unauthorized access attempts. This is an access control which prevents physical access to a data center. In
this case the attack vendor should be one that can do damage without physical access.
B: Dial-up access when unauthorized may result in technical damage and not physical damage.
D: Ping of Death is a Denial of Service attack and involves technical controls and not an attack that results in physical damages.

References:
Dulaney, Emmett and Chuck Eastton, CompTIA Security+ Study Guide, 6th Edition, Sybex, Indianapolis, 2014, p. 378