ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 439 - CAS-004 discussion

Report
Export

The Chief Executive Officer of an online retailer notices a sudden drop in sales A security analyst at the retailer detects a redirection of unsecure web traffic to a competitor's site Which of the following would best prevent this type of attack?

A.
Enabling HSTS
Answers
A.
Enabling HSTS
B.
Configuring certificate pinning
Answers
B.
Configuring certificate pinning
C.
Enforcing DNSSEC
Answers
C.
Enforcing DNSSEC
D.
Deploying certificate stapling
Answers
D.
Deploying certificate stapling
Suggested answer: A

Explanation:

HTTP Strict Transport Security (HSTS) is a web security policy mechanism that helps to protect websites against man-in-the-middle attacks such as protocol downgrade attacks and cookie hijacking. It allows web servers to declare that web browsers (or other complying user agents) should only interact with it using secure HTTPS connections, and never via the insecure HTTP protocol. Enabling HSTS would prevent attackers from redirecting users from a secure site to an unsecure or malicious one.

asked 02/10/2024
Marcelo Rubio Caiado
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first