ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 218 - CS0-003 discussion

Report
Export

A security analyst noticed the following entry on a web server log:

Warning: fopen (http://127.0.0.1:16) : failed to open stream:

Connection refused in /hj/var/www/showimage.php on line 7

Which of the following malicious activities was most likely attempted?

A.
XSS
Answers
A.
XSS
B.
CSRF
Answers
B.
CSRF
C.
SSRF
Answers
C.
SSRF
D.
RCE
Answers
D.
RCE
Suggested answer: C

Explanation:

The malicious activity that was most likely attempted is SSRF (Server-Side Request Forgery). This is a type of attack that exploits a vulnerable web application to make requests to other resources on behalf of the web server. In this case, the attacker tried to use the fopen function to access the local loopback address (127.0.0.1) on port 16, which could be a service that is not intended to be exposed to the public. The connection was refused, indicating that the port was closed or filtered.

Reference: CompTIA CySA+ Study Guide: Exam CS0-003, 3rd Edition, Chapter 2: Software and Application Security, page 66.

asked 02/10/2024
Andrey Markov
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first