Which of the following is a type of attack that uses malicious code to exploit vulnerabilities in web applications?
A. Phishing
B. Cross-site scripting (XSS)
C. Denial-of-service
D. Man-in-the-middle
Answer: Option B
Solution (By JKSSB Mock Tests)
Cross-site scripting (XSS) is a type of attack where malicious scripts are injected into web applications, exploiting vulnerabilities to steal data or hijack sessions.
Explanation:
A vulnerability management program systematically identifies, prioritizes, and remediates security vulnerabilities to reduce the risk of exploitation.
What type of attack relies on social engineering to drop malicious flash drives in a company parking lot, hoping an employee will plug one into a corporate workstation out of curiosity?
Explanation:
Baiting uses the promise of an item or curiosity (like a misplaced USB drive with an intriguing label) to entice victims into compromising their own system security.
What security mechanism acts as an analytical perimeter boundary, monitoring and filtering incoming and outgoing network traffic based on an organization's pre-established rule policies?
Explanation:
A firewall filters data packets shifting across network interfaces, blocking or permitting connections according to specific access control security metrics.
No comments yet. Be the first to start the discussion!