CWNP CWSP-207 Exam
Certified Wireless Security Professional (Page 3 )

Updated On: 7-Feb-2026

A WLAN is implemented using WPA-Personal and MAC filtering.

To what common wireless network attacks is this network potentially vulnerable? (Choose 3)

  1. Offline dictionary attacks
  2. MAC Spoofing
  3. ASLEAP
  4. DoS

Answer(s): A,B,D



An attack is under way on the network. The attack is preventing users from accessing resources required for business operations, but the attacker has not gained access to any files or dat

  1. What kind of attack is described?
  2. Man-in-the-middle
  3. Hijacking
  4. ASLEAP
  5. DoS

Answer(s): D



Given: WLAN attacks are typically conducted by hackers to exploit a specific vulnerability within a network.

What statement correctly pairs the type of WLAN attack with the exploited vulnerability? (Choose 3)

  1. Management interface exploit attacks are attacks that use social engineering to gain credentials from managers.
  2. Zero-day attacks are always authentication or encryption cracking attacks.
  3. RF DoS attacks prevent successful wireless communication on a specific frequency or frequency range.
  4. Hijacking attacks interrupt a user's legitimate connection and introduce a new connection with an evil twin AP.
  5. Social engineering attacks are performed to collect sensitive information from unsuspecting users
  6. Association flood attacks are Layer 3 DoS attacks performed against authenticated client stations

Answer(s): C,D,E



Given: One of the security risks introduced by WPA2-Personal is an attack conducted by an authorized network user who knows the passphrase. In order to decrypt other users' traffic, the attacker must obtain certain information from the 4-way handshake of the other users.

In addition to knowing the Pairwise Master Key (PMK) and the supplicant's address (SA), what other three inputs must be collected with a protocol analyzer to recreate encryption keys? (Choose 3)

  1. Authenticator nonce
  2. Supplicant nonce
  3. Authenticator address (BSSID)
  4. GTKSA
  5. Authentication Server nonce

Answer(s): A,B,C



What is a primary criteria for a network to qualify as a Robust Security Network (RSN)?

  1. Token cards must be used for authentication.
  2. Dynamic WEP-104 encryption must be enabled.
  3. WEP may not be used for encryption.
  4. WPA-Personal must be supported for authentication and encryption.
  5. WLAN controllers and APs must not support SSHv1.

Answer(s): C






Post your Comments and Discuss CWNP CWSP-207 exam prep with other Community members:

Join the CWSP-207 Discussion