Tag: security
Questions Related to security
-
Data Validation
-
Secure Cookies
-
Encryption
-
Comprehensive exception handling
-
Session ID
-
Account Privileges
-
UserName
-
Password
-
Ensure that the data has not been tampered with
-
Ensure that the session is valid
-
Ensure that the user is valid
-
All of the above
-
Cross Site Scripting
-
Phishing
-
SQL Injection
-
HTTP Response Splitting
-
White-box testing is performed by an independent programmer team
-
Black-box testing uses the bottom-up approach
-
Black-box testing involves the business units
-
White-box testing examines the program internal logical structures
-
Grey-box testing
-
Black-box testing
-
White-box testing
-
None of these
-
A penetration test enumerates resources, and a vulnerability assessment enumerates vulnerabilities
-
They are one and the same
-
A penetration test identifies running services, and vulnerability assessments provide a more in-depth understanding of vulnerabilities
-
A penetration test exploits vulnerabilities, and a vulnerability assessment finds vulnerabilities
-
The configuration management
-
The session management
-
The change management process
-
The authorization process
-
SOAP and SAML
-
SOAP and HTTP
-
SSL and SOAP
-
All
-
A mechanism that requires only a password
-
Basic authentication
-
2/3 factor authentication
-
A mechanism with no lock-out, to prevent accidentally denying legitimate access