cybersecurity quiz 3
What is application fuzzing?
Automated data is injected into an app to test response and security.
Which is a likely cause of the continued issues related to the EternalBlue common vulnerabilities and exposures (CVE)?
Poor patch management
Which duty is the primary focus of data loss prevention (DLP)?
Preventing unauthorized sharing of privileged information
Which term best describes actions taken to increase infrastructure security?
Hardening
What is a true statement about the Windows Operating System?
It has a folder-based file system
Which term refers to the idea of moving security earlier in the Secure Software Development Lifecycle (SSDLC) to avoid downstream bugs and vulnerabilities?
Shift Left
Which paIred term is the primary security control deployed during the Identify and Plan stages of the SSDLC?
Split testing and A/B testing
Which term best describes the main attack method used in the SolarWinds attack?
Supply-chain attack
Which term is the input vehicle for a server-side request forgery (SSRF) attack?
User-supplied URL