List of questions
Related questions
Question 475 - 312-50v12 discussion
Calvin, a grey-hat hacker, targets a web application that has design flaws in its authentication mechanism. He enumerates usernames from the login form of the web application, which requests users to feed data and specifies the incorrect field in case of invalid credentials. Later, Calvin uses this information to perform social engineering.
Which of the following design flaws in the authentication mechanism is exploited by Calvin?
A.
Insecure transmission of credentials
B.
Verbose failure messages
C.
User impersonation
D.
Password reset mechanism
Your answer:
0 comments
Sorted by
Leave a comment first