ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 500 - SY0-601 discussion

Report
Export

A security analyst discovers that a company's username and password database were posted on an internet forum. The usernames and passwords are stored in plaintext. Which of the following would mitigate the damage done by this type of data exfiltration in the future?

A.
Create DLP controls that prevent documents from leaving the network.
Answers
A.
Create DLP controls that prevent documents from leaving the network.
B.
Implement salting and hashing.
Answers
B.
Implement salting and hashing.
C.
Configure the web content filter to block access to the forum.
Answers
C.
Configure the web content filter to block access to the forum.
D.
Increase password complexity requirements.
Answers
D.
Increase password complexity requirements.
Suggested answer: B

Explanation:

Salting and hashing are techniques that can improve the security of passwords stored in a database by making them harder to crack or reverse-engineer by hackers who might access the database12.

Salting is the process of adding a unique, random string of characters known only to the site to each password before it is hashed2. Hashing is the process of converting a password into a fixed-length string of characters, which cannot be reversed3. Salting and hashing ensure that the encryption process results in a different hash value, even when two passwords are the same1. This makes it more difficult for an attacker to use pre-computed tables or dictionaries to guess the passwords, or to exploit duplicate hashes in the database4.

asked 02/10/2024
Cristian Melo
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first