ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 482 - CAS-004 discussion

Report
Export

An analyst reviews the following output collected during the execution of a web application security assessment:

Which of the following attacks would be most likely to succeed, given the output?

A.
NULL and unauthenticated cipher downgrade attack
Answers
A.
NULL and unauthenticated cipher downgrade attack
B.
Availability attack from manipulation of associated authentication data
Answers
B.
Availability attack from manipulation of associated authentication data
C.
Padding oracle attack
Answers
C.
Padding oracle attack
D.
On-path forced renegotiation to insecure ciphers
Answers
D.
On-path forced renegotiation to insecure ciphers
Suggested answer: C

Explanation:

Based on the output in the image, which shows weak cipher suites and vulnerabilities related to encryption padding, the padding oracle attack is the most likely. This type of attack exploits the way padding errors are handled during decryption, potentially allowing an attacker to decrypt sensitive information. The weak cipher suites and lack of forward secrecy further increase the likelihood of such an attack succeeding. CASP+ highlights padding oracle attacks as critical vulnerabilities, particularly in environments where weak encryption protocols are used.

CASP+ CAS-004 Exam Objectives: Domain 2.0 -- Enterprise Security Operations (Encryption and Padding Oracle Attacks)

CompTIA CASP+ Study Guide: Cryptographic Attacks and Cipher Vulnerabilities

asked 02/10/2024
Katlego Nkwane
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first