• Wrong document? Swap it for free
  • Written by students who passed
  • Immediately available after payment
  • Read online or as PDF
Sell
Where do you study
Your language
Document preview thumbnail
Preview 4 out of 128 pages
Exam (elaborations)

Wgu C702 Forensics And Network Intrusion 300+ Questions With 100% Complete Correct Solutions Version

Document preview thumbnail
Preview 4 out of 128 pages

WGU C702 FORENSICS AND NETWORK INTRUSION 300+ QUESTIONS WITH 100% COMPLETE CORRECT SOLUTIONS VERSION

Content preview

WGU Forensics and Network Intrusion - C702 & DFE

1. Web Application Most security breaches occur in web applications, rather
Threats - 1 than in web servers, as web applications might contain
bugs due to coding issues in the development phase.
Consequently, web applications are prone to various
types of threats, some of which are outlined below:
Injection Flaws Injection flaws are the most common ap-
plication vulnerabilities that allow untrusted user-supplied
data to be interpreted and executed as a command or
query. The attackers inject malicious code, commands, or
scripts into the input gates of flawed web applications in
such a manner that the applications interpret and run with
the newly supplied malicious input, which in turn allows
the attackers to extract sensitive information. Such injec-
tion flaws are commonly found in in SQL, NoSQL, and
LDAP queries as well as OS commands. Injection flaws
have been regarded as the topmost security vulnerability
in web applications in 2017 by the Open Web Application
Security Project (OWASP).
SQL Injection
In this type of attack, the attacker injects malicious SQL
commands or queries as input data. This helps them
bypass the security measures of the web application and
retrieve sensitive content from the database server.
Cross Site Scripting In this type of attack, the attackers
bypass the client's ID security mechanisms and gain ac-
cess privileges. Subsequently, they inject the malicious
scripts into specific fields in the web pages. These mali-
cious XSS scripts can rewrite the HTML content of a web-
site, hijack user sessions or redirect users to malicious
websites, and deface website. XSS is one of OWASP's
top 10 web application security vulnerabilities for 2017.
Cross Site Request Forgery In this attack method, an
authenticated user is made to perform certain tasks on
the web application that is chosen by an attacker. For
example, an attacker can make a user click on a particular
link sent via email or chat. Broken Access Control
This is a method in which an attacker identifies a flaw
in access-control policies and exploits it to bypass the
authentication mechanism. This enables the attacker to


,WGU Forensics and Network Intrusion - C702 & DFE

gain access to sensitive data, modify access rights, or
operate accounts of other users. This is a part of 2017
OWASP top 10 security vulnerabilities.
Broken Authentication
Attackers exploit implementation flaws in the authentica-
tion and session management functions of a web appli-
cation to obtain administrative privileges or impersonate
other users. Common vulnerable areas include timeouts,
secret questions, and password management. Broken
authentication is one of OWASP's top 10 web application
security vulnerabilities for 2017.
Buffer Overflow
The buffer overflow of a web application occurs when it
fails to guard its buffer properly and allows writing beyond
its maximum size. Thus, it overwrites adjacent memory
locations. There are multiple forms of buffer overflow,
including heap buffer overflows and format string attacks.
The purpose of these attacks is to corrupt the execution
stack of the web application.
Cookie Poisoning
Cookie poisoning refers to the modification of a cookie
for bypassing security measures or gaining unauthorized
access to information. In this type of attack, the attackers
bypass the authentication process by altering the infor-
mation present inside a cookie. Once the attackers gain
control over a network, they can modify its content, use
the system for a malicious attack, or steal information
from the users' systems.
Sensitive Data Exposure
Sensitive information, such as account records, cred-
it-card numbers, passwords, or other authenticated infor-
mation are generally stored by web applications either in
a database or on a file system.
If the developers make any mistakes while enforcing en-
cryption techniques on a web application or ignore the se-
curity aspects of some parts of the application, attackers
can easily exploit those flaws to gain unauthorized access
to sensitive information. Sensitive data can be exploited
and misused by both insiders and outsiders to perform


,WGU Forensics and Network Intrusion - C702 & DFE

identity theft, credit-card fraud, and other cybercrimes.
This threat is included in OWASP top 10 security vulner-
abilities for 2017.
Information Leakage
refers to a drawback in a web application where the appli-
cation unintentionally reveals sensitive information to an
unauthorized user. Such information leakage can cause
great losses to a company.
Hence, the company needs to employ proper content
filtering mechanisms to protect all its information or data
sources, such as systems or other network resources,
from information leakage.
Improper Error Handling
This threat arises when a web application is unable to
handle internal errors properly. In such cases, the web-
site returns information, such as database dumps, stack
traces, and error codes, in the form of errors.
Insufficient Logging & Monitoring Log files keep records
of the actions and events that occur while an applica-
tion/service is running. This vulnerability occurs when
the logs do not record security-critical events or provide
unclear warnings or error messages. The lack of log mon-
itoring or the maintenance of logs at insecure locations
greatly increases the chance of a major security incident.
Moreover, insufficient logging and monitoring practices
leave no audit trail for forensic analysis, making the de-
tection of any malicious behavior exceedingly difficult for
forensic investigators. It is one of 2017 OWASP's top 10
web application security vulnerabilities.
Path/Directory Traversal
When attackers exploit HTTP by using directory traversal,
they gain unauthorized access to directories, following
which they may execute commands outside the web serv-
er's root directory.
Parameter/Form Tampering
This type of tampering attack aims at manipulating the
communication parameters exchanged between a client
and server to make changes in application data, such as
user IDs and passwords with event logs or the cost and


, WGU Forensics and Network Intrusion - C702 & DFE

quantity of products.
In order to improve the functionality and control of the ap-
plication, the system collects such information and stores
it in hidden form fields, cookies, or URL query strings.
Hackers use tools such as WebScarab and Paros proxy
to launch this type of attack. Successful exploitation might
lead to other attacks such as file inclusion and XSS.
Denial-of-Service (DoS) A denial of service (DoS) at-
tack aims at terminating the operations of a website or
server by making its resources unavailable to clients. For
example, a DoS attack may shut down the functioning of
a website related to banking or an email service for a few
hours or even days, resulting in the loss of both time and
money.
Unvalidated Input In this type of attack, attackers tamper
with the URL, HTTP requests, headers, hidden fields,
form fields, query strings, etc. to bypass a security mea-
sures in a system. User login IDs and other related data
get stored in cookies, which become a source of attacks.
Examples of attacks that cause unvalidated input include
SQL injection, cross-site scripting (XSS), and buffer over-
flows.
Security Misconfiguration
The lack of a repeatable security-hardening process at
any layer of the application stack, which includes web
servers, databases, frameworks, host OSes, application
servers, and storage devices, can lead to a security mis-
configuration vulnerability.
The use of default configurations, passwords, or
out-of-date software can increase the risk of an attack.
This is included in OWASP 2017 top 10 security vulnera-
bilities.
Log Tampering
Web applications maintain logs to track the usage pat-
terns, such as admin login credentials and user login
credentials. The attackers usually inject, delete or tamper
the web application logs to engage in malicious activities
or hide their identities

Document information

Uploaded on
January 18, 2025
Number of pages
128
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers
$25.49

Wrong document? Swap it for free Within 14 days of purchase and before downloading, you can choose a different document. You can simply spend the amount again.
Written by students who passed
Immediately available after payment
Read online or as PDF

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
statham
3.9
(134)
Sold
5189
Followers
29
Items
1462
Last sold
1 week ago



Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Working on your references?

Create accurate citations in APA, MLA and Harvard with our free citation generator.

Working on your references?

Frequently asked questions