ExamGecko
Question list
Search
Search

Related questions











Question 32 - 312-50v12 discussion

Report
Export

Scenario1:

A.
Victim opens the attacker's web site.
Answers
A.
Victim opens the attacker's web site.
B.
Attacker sets up a web site which contains interesting and attractive content like 'Do you want to make $1000 in a day?'.
Answers
B.
Attacker sets up a web site which contains interesting and attractive content like 'Do you want to make $1000 in a day?'.
C.
Victim clicks to the interesting and attractive content URL.
Answers
C.
Victim clicks to the interesting and attractive content URL.
D.
Attacker creates a transparent 'iframe' in front of the URL which victim attempts to click, so victim thinks that he/she clicks to the 'Do you want to make $1000 in a day?' URL but actually he/she clicks to the content or URL that exists in the transparent 'iframe' which is setup by the attacker.What is the name of the attack which is mentioned in the scenario?
Answers
D.
Attacker creates a transparent 'iframe' in front of the URL which victim attempts to click, so victim thinks that he/she clicks to the 'Do you want to make $1000 in a day?' URL but actually he/she clicks to the content or URL that exists in the transparent 'iframe' which is setup by the attacker.What is the name of the attack which is mentioned in the scenario?
E.
Session Fixation
Answers
E.
Session Fixation
F.
HTML Injection
Answers
F.
HTML Injection
G.
HTTP Parameter Pollution
Answers
G.
HTTP Parameter Pollution
H.
Clickjacking Attack
Answers
H.
Clickjacking Attack
Suggested answer: D

Explanation:

https://en.wikipedia.org/wiki/Clickjacking Clickjacking is an attack that tricks a user into clicking a webpage element which is invisible or disguised as another element. This can cause users to unwittingly download malware, visit malicious web pages, provide credentials or sensitive information, transfer money, or purchase products online.

Typically, clickjacking is performed by displaying an invisible page or HTML element, inside an iframe, on top of the page the user sees. The user believes they are clicking the visible page but in fact they are clicking an invisible element in the additional page transposed on top of it.

asked 18/09/2024
Charles Hagan
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first