ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 281 - SY0-701 discussion

Report
Export

A website user is locked out of an account after clicking an email link and visiting a different website Web server logs show the user's password was changed, even though the user did not change the password. Which of the following is the most likely cause?

A.
Cross-sue request forgery
Answers
A.
Cross-sue request forgery
B.
Directory traversal
Answers
B.
Directory traversal
C.
ARP poisoning
Answers
C.
ARP poisoning
D.
SQL injection
Answers
D.
SQL injection
Suggested answer: A

Explanation:

The scenario describes a situation where a user unknowingly triggers an unwanted action, such as changing their password, by clicking a malicious link. This is indicative of a Cross-Site Request Forgery (CSRF) attack, where an attacker tricks the user into executing actions they did not intend to perform on a web application in which they are authenticated.

Reference = CompTIA Security+ SY0-701 study materials, particularly in the domain of web application security and common attack vectors like CSRF.

asked 02/10/2024
Rolf Johannesen|
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first