Deep Dive: Brute Force Attacks

Part of Technical Attacks · Section 6 of 9

Deep DiveUnit: 3.6 Fundamentals of Cyber SecurityGCSE

This deep dive covers Deep Dive: Brute Force Attacks within Technical Attacks for GCSE Computer Science. Revise Technical Attacks in 3.6 Fundamentals of Cyber Security for GCSE Computer Science with 18 exam-style questions and 16 flashcards. This is a high-frequency topic, so it is worth revising until the explanation feels precise and repeatable. It is section 6 of 9 in this topic. Use this deep dive to connect the idea to the wider topic before moving on to questions and flashcards.

Deep Dive: Brute Force Attacks

  • Method: Systematically trying every possible password combination until finding the correct one
  • Dictionary attack variant: Tries common passwords first (password123, qwerty, etc.) - faster than pure brute force
  • Time factor: Short simple passwords can be cracked in minutes; long complex passwords take years
  • Prevention methods:
    • Account lockout: Lock account after X failed attempts (e.g., 3-5 tries)
    • Strong passwords: Minimum 12+ characters with mixed case, numbers, symbols
    • CAPTCHA: Proves user is human, not automated script
    • Rate limiting: Slow down login attempts (delays between tries)
    • Multi-factor authentication: Requires second factor even if password is correct

Practice questions for Technical Attacks

Which of the following best describes a brute force attack?

  • A. Sending millions of requests to crash a server
  • B. Trying every possible combination of characters until the correct password is found
  • C. Inserting malicious code into a database query
  • D. Intercepting data as it travels across a network
1 markfoundation

Explain what a DDoS attack is and how it affects a network.

3 marksstandard

Quick recall flashcards

18 questions on Technical Attacks — practise free

Instant marking, adaptive difficulty and spaced-repetition flashcards — all aligned to your exam board.

Start revising free →