Courseiva
hardMultiple ChoiceObjective-mapped

220-1202 Practice Question: An employee finds a USB drive labeled 'Employee…

An employee finds a USB drive labeled 'Employee Bonuses Q4' in the parking lot and plugs it into their work computer to see the contents. The computer immediately begins exhibiting erratic behavior. Which social engineering attack was executed?

⚠ Common exam trap

It's easy for candidates to confuse baiting with phishing because both involve deception, but CompTIA A+ 220-1202 specifically tests the distinction that baiting uses a physical or digital lure (like a USB drive or free download) while phishing relies on electronic communication.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Baiting

Baiting. Baiting is a social engineering attack that uses a physical device (like a USB drive) or digital offer to lure a victim into taking an action that compromises security. In this scenario, the attacker left a USB drive labeled with an enticing file name ('Employee Bonuses Q4') in a public location, and the victim plugged it into their work computer, which then executed malicious code (e.g., autorun.inf or a malicious script) that caused erratic behavior. This is a classic example of a physical baiting attack, distinct from phishing or pretexting which rely on digital communication or fabricated scenarios.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Phishing

    Why it's wrong here

    Phishing is a social engineering technique that primarily relies on digital communication channels, such as email, text messages (smishing), or malicious websites, to trick individuals. Attackers impersonate trustworthy entities to induce victims into revealing sensitive information, like login credentials or financial data, or to download malware by clicking deceptive links. This method specifically targets users through their digital interactions, not by leaving physical objects.

  • Pretexting

    Why it's wrong here

    Pretexting involves an attacker creating a fabricated scenario or 'pretext' to manipulate a target into divulging confidential information or performing an action. This tactic typically relies on verbal communication, often over the phone, where the attacker assumes a false identity and crafts a believable story to gain the victim's trust and cooperation. Unlike baiting, it does not involve leaving a physical item as an enticement but rather a direct, interactive deception.

  • Baiting

    Why this is correct

    Baiting is a social engineering attack where an attacker leaves a physical, enticing object, such as a USB drive, CD, or even a mobile device, in a public or semi-public location. The item is often labeled provocatively (e.g., 'Employee Bonuses' or 'Confidential Data') to pique curiosity. The goal is for a curious victim to pick up the item and connect it to a computer, inadvertently introducing malware, ransomware, or other malicious payloads into the system.

  • Tailgating

    Why it's wrong here

    Tailgating, also known as piggybacking, is a physical security breach where an unauthorized individual gains entry into a restricted area by closely following an authorized person through a controlled access point. This often occurs when the authorized person holds the door open or scans their badge, and the attacker slips in behind them without proper authentication. This method focuses on bypassing physical access controls, not on compromising systems through digital media.

About these practice questions

Courseiva writes every 220-1202 question from scratch — 495 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This 220-1202 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the 220-1202 exam.