ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 162 - CS0-003 discussion

Report
Export

A security analyst is reviewing the logs of a web server and notices that an attacker has attempted to exploit a SQL injection vulnerability. Which of the following tools can the analyst use to analyze the attack and prevent future attacks?

A.
A web application firewall
Answers
A.
A web application firewall
B.
A network intrusion detection system
Answers
B.
A network intrusion detection system
C.
A vulnerability scanner
Answers
C.
A vulnerability scanner
D.
A web proxy
Answers
D.
A web proxy
Suggested answer: A

Explanation:

A web application firewall (WAF) is a tool that can protect web servers from attacks such as SQL injection, cross-site scripting, and other web-based threats. A WAF can filter, monitor, and block malicious HTTP traffic before it reaches the web server. A WAF can also be configured with rules and policies to detect and prevent specific types of attacks.

Reference: CompTIA CySA+ Study Guide: Exam CS0-002, 2nd Edition, Chapter 3, “Security

Architecture and Tool Sets”, page 91; CompTIA CySA+ Certification Exam Objectives Version 4.0,

Domain 1.0 “Threat and Vulnerability Management”, Objective 1.2 “Given a scenario, analyze the

results of a network reconnaissance”, Sub-objective “Web application attacks”, page 9

: CompTIA CySA+ Study Guide: Exam CS0-002, 2nd Edition : CompTIA CySA+ Certification Exam Objectives Version 4.0.pdf)

asked 02/10/2024
Emma Buchanan
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first