Certified Ethical Hacker (CEH) Practice Question

During a wireless engagement you inspect an access point's RSN information element and note these lines:

Group Cipher : TKIP Pairwise Ciphers (2) : CCMP TKIP AKM Suites : PSK

If a typical 802.11 client associates using its default "automatic" settings, which cipher will actually protect broadcast and multicast frames on this WPA2-PSK network, and why is that choice considered weak?

  • GCMP, because WPA2 automatically upgrades group traffic to Galois/Counter Mode for integrity and confidentiality.

  • TKIP, because WPA2 uses the AP-defined Group Temporal Key based on RC4, which is susceptible to IV reuse and MIC attacks.

  • CCMP, because clients always prefer the strongest available cipher, making broadcast traffic safe with AES-128.

  • WEP-104, because mixed-mode WPA2 falls back to legacy WEP for group frames, exposing weak IV protection.

Certified Ethical Hacker (CEH)
Wireless Network Hacking
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot