ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 54 - 212-82 discussion

Report
Export

Miguel, a professional hacker, targeted an organization to gain illegitimate access to its critical information. He identified a flaw in the end-point communication that can disclose the target application's data.

Which of the following secure application design principles was not met by the application in the above scenario?

A.
Secure the weakest link
Answers
A.
Secure the weakest link
B.
Do not trust user input
Answers
B.
Do not trust user input
C.
Exception handling
Answers
C.
Exception handling
D.
Fault tolerance
Answers
D.
Fault tolerance
Suggested answer: C

Explanation:

Exception handling is a secure application design principle that states that the application should handle errors and exceptions gracefully and securely, without exposing sensitive information or compromising the system's functionality. Exception handling can help prevent attackers from exploiting errors or exceptions to gain access to data or resources or cause denial-of-service attacks.

In the scenario, Miguel identified a flaw in the end-point communication that can disclose the target application's data, which means that the application did not meet the exception handling principle.

asked 18/09/2024
stefano atzei
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first