What type of software vulnerability allows attackers to inject malicious client-side scripts into web pages viewed by other users, bypassing browser security controls? MCQ with Answer and Explanation
What type of software vulnerability allows attackers to inject malicious client-side scripts into web pages viewed by other users, bypassing browser security controls?
A. Zero-Day Exploit
B. Buffer Overflow
C. Cross-Site Scripting (XSS)
D. SQL Injection
Answer: Option C
Solution (By JKSSB Mock Tests)
XSS vulnerabilities occur when web applications include unvalidated data in web outputs, allowing threat actors to inject malicious scripts into a victim's browser session.
An attacker uses a network configuration trick to intercept wireless session cookies, letting them access a corporate web account without needing the user's password. This exploit is:
Explanation:
Session hijacking captures live authentication tokens or active session state cookies, enabling attackers to bypass authentication gateways and impersonate victims.
Explanation:
A digital certificate is an electronic document that uses a digital signature to bind a public key with an identity, verifying the owner's authenticity in online communications.
What form of malicious software masquerades as a legitimate spreadsheet processor or media utility, tricks users into downloading it, and then drops spyware onto the system?
Explanation:
Trojan horses use deceptive packaging to mimic safe software utilities, tricking victims into initiating code that compromises their own security perimeters.
No comments yet. Be the first to start the discussion!