Question

Two hosts on the same Ethernet subnet use ARP to resolve each other's IP address to a MAC address. Which statement best explains how ARP spoofing (ARP cache poisoning) exploits a design flaw in the protocol?

A ARP encrypts IP-to-MAC bindings using a shared secret, so spoofing requires first breaking that encryption
B ARP requires a valid digital signature on every reply, so spoofing is only possible after stealing a trusted certificate
C ARP has no built-in authentication mechanism, so an attacker can broadcast unsolicited replies with forged IP-to-MAC bindings, which hosts accept and cache without verifying the sender
D ARP spoofing succeeds only because switches flood every ARP reply to all ports regardless of the destination MAC address
E ARP tables are rebuilt directly from DNS records every few seconds, so spoofing works by first compromising the DNS server
Practice Next

Hey! Ask a query

🎓
Think You're Ready for RBI Grade B?
RBI Grade B 2026 Phase 1 Memory Based Paper
  • 200 Questions with Detailed Solutions
  • Section-wise Coverage (GA, English, Quant & Reasoning)