Answered step by step
Verified Expert Solution
Question
1 Approved Answer
You are using Wireshark to try and determine if a denial - of - service ( DDoS ) attack is happening on your network (
You are using Wireshark to try and determine if a denialofservice DDoS attack is happening on your network You previously captured packets using the tcpflags.syn and tcpflags.ack filter, but only saw a few SYNACK packets. You have now changed the filter to tcpflags.syn and tcpflags.ack After examining the Wireshark results shown in the image, which of the following is the best reason to conclude that a DDoS attack is happening?
Question options:
There are multiple SYN packets with different source addresses destined for
There was a flood of SYN packets without a matching SYNACK packet.
The source address for all SYN packets is
The Transmission Control Protocol shows the hex value of the SYN flag is x
Step by Step Solution
There are 3 Steps involved in it
Step: 1
Get Instant Access to Expert-Tailored Solutions
See step-by-step solutions with expert insights and AI powered tools for academic success
Step: 2
Step: 3
Ace Your Homework with AI
Get the answers you need in no time with our AI-driven, step-by-step assistance
Get Started