Câu 310: 312-50V13: Certified Ethical Hacker v13
You are a Certified Ethical Hacker and have been hired by a financial institution to assess the security of its newly developed web application. The application employs a multifaceted authentication system with JavaScript-based client-side controls. During your testing, you discover that client-side controls enforce p…
Nội dung câu hỏi
You are a Certified Ethical Hacker and have been hired by a financial institution to assess the security of its newly developed web application. The application employs a multifaceted authentication system with JavaScript-based client-side controls. During your testing, you discover that client-side controls enforce password strength and ensure CAPTCHA validation. The application also uses a proprietary encryption algorithm for client-side data. Your goal is to bypass these client-side controls to assess how robust they really are. What method would be the most effective for bypassing these controls without triggering server-side alarms?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. Inject malicious JavaScript code into the login form to overwrite the client-side validation rules.
- B. Disable JavaScript in the browser and proceed to submit weaker passwords and invalid CAPTCHAs. — đáp án hiện tại
- C. Utilize a proxy tool to intercept and modify the client-side controls before they reach the server.
- D. Reverse-engineer the proprietary encryption algorithm and manipulate the encrypted data before submission.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.