A security engineer implements time-based one-time passwords (TOTP) for VPN access. Which attack does this MOST effectively mitigate?
-
A
Brute-force attacks against VPN certificates
-
B
Credential replay attacks using stolen static passwords
-
C
Man-in-the-browser attacks on web applications
-
D
ARP poisoning on the internal network