Chapter 7

Operating System and Application Security

The Following CompTIA Security+ Exam Objectives Are Covered in This Chapter:

  • 1.1 Explain the security function and purpose of network devices and technologies.
    • URL filtering, content inspection, malware inspection
  • 3.5 Analyze and differentiate among types of application attacks.
    • SQL injection
    • LDAP injection
    • XML injection
    • Directory traversal/command injection
    • Session hijacking
    • Header manipulation
  • 3.6 Analyze and differentiate among types of mitigation and deterrent techniques.
    • Hardening: Disabling unnecessary services; Protecting management interfaces and applications; Password protection; Disabling unnecessary accounts
  • 4.1 Explain the importance of application security.
    • Fuzzing

Get CompTIA® Security+™: Study Guide, Fifth Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.