Home > Quiz: Could you detect an application attack?
Security Quiz:
EMAIL THIS

Quiz: Could you detect an application attack?

10 Jul 2006 | SearchSecurity.com

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   

As application layer attacks continue to rise, information security practitioners should use logging techniques to protect their application servers. Take this five-question quiz to test your application security awareness, review common application attacks and learn how to improve application layer logging to detect and protect against these attacks.

1. Which of the following attacks is said to have arisen because the C programming language supplied the framework and poor programming practices supplied the vulnerability?
a. SQL injection
b. Buffer overflow
c. Cross-site scripting
d. SYN flood
Answer

2. Which of the following protocols can be used to ensure consistency in logging across applications, platforms and devices, governs network management, and monitors network devices and their functions?
a. EGP
b. IGP
c. RIP
d. SNMP
Answer

3. Which of the following statements about application logging is false?
a. Application logging can provide you with critical information in the event of a security incident.
b. Proactive monitoring will provide you with the ability to detect events in near real-time.
c. Reactive monitoring will offer invaluable assistance to forensic investigators.
d. It's difficult to start.
Answer

4. Which attack uses a multitude of compromised systems to send a flood of incoming messages to the target system to shut it down?
a. Denial-of-service attack
b. SYN flood attack
c. Distributed denial-of-service attack
d. None of the above
Answer

5. To improve the overall quality of Web applications, developers should abide by which of the following rules?
a. Trust user supplied data.
b. Clean and validate all user input.
c. Use GET instead of POST.
d. Allow the use of HIDDEN form fields.
Answer

Digg This!    StumbleUpon Toolbar StumbleUpon    Bookmark with Delicious Del.icio.us   


RELATED CONTENT
Web Application Security
Future security threats: Enterprise attacks of 2009
How to prevent clickjacking attacks with security policy, not technology
Finjan offers free audits for crimeware sufferers
Finance sector poor at achieving outsourcing success
How to prevent SQL Server and Internet Explorer hack attacks
Web browser exploits explained
Sophos adds browser and virtualisation blocking features
Web advertising exploits: Protecting Web browsers and servers
Hacker toolkit targets Microsoft Access zero-day
Hackers and phishers see charities as "soft targets"

RELATED GLOSSARY TERMS
Terms from Whatis.com − the technology online dictionary
Serious Organized Crime Agency  (SearchSecurityUK.com)

RELATED RESOURCES
2020software.com, trial software downloads for accounting software, ERP software, CRM software and business software systems
Search Bitpipe.com for the latest white papers and business webcasts
Whatis.com, the online computer dictionary


About Us  |  Contact Us  |  For Advertisers  |  For Business Partners  |  Site Index  |  RSS
SEARCH 
TechTarget provides enterprise IT professionals with the information they need to perform their jobs - from developing strategy, to making cost-effective IT purchase decisions and managing their organizations' IT projects - with its network of technology-specific Web sites, events and magazines.

TechTarget Corporate Web Site  |  Media Kits  |  Site Map




All Rights Reserved, Copyright 2008 - 2009, TechTarget | Read our Privacy Policy
  TechTarget - The IT Media ROI Experts