Câu 42: CS0-003: CompTIA CySA+ (CS0-003)
A security analyst is reviewing the findings of the latest vulnerability report for a company’s web application. The web application accepts files for a Bash script to be processed if the files match a given hash. The analyst is able to submit files to the system due to a hash collision. Which of the following should…
Nội dung câu hỏi
A security analyst is reviewing the findings of the latest vulnerability report for a company’s web application. The web application accepts files for a Bash script to be processed if the files match a given hash. The analyst is able to submit files to the system due to a hash collision. Which of the following should the analyst suggest to mitigate the vulnerability with the fewest changes to the current script and infrastructure?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Deploy a WAF to the front of the application.
- B. Replace the current MD5 with SHA-256. — đáp án hiện tại
- C. Deploy an antivirus application on the hosting system.
- D. Replace the MD5 with digital signatures.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.