Review Questions

1. What technique or method can be employed by hackers and researchers to discover unknown flaws or errors in software?

A. Dictionary attacks

B. Fuzzing

C. War dialing

D. Cross-site request forgery

2. Which of the following is not a way to prevent or protect against XSS?

A. Input validation

B. Defensive coding

C. Allowing script input

D. Escaping metacharacters

3. Which is the best countermeasure against malicious code?

A. Manage user behavior.

B. Prevent reuse of external removable media.

C. Use antivirus software.

D. Disable mobile code on web browsers.

4. When a vendor releases a patch, which of the following is the most important?

A. Installing the patch immediately

B. Setting up automatic patch installation

C. Allowing users ...

Get CompTIA Security+™: Review Guide, Second Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.