100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.6 TrustPilot
logo-home
Exam (elaborations)

WGU D385 - Software and Security Testing_ (WGU Updated Exam Review) With Correct Questions and Answers_ 100% Graded A+

Rating
-
Sold
1
Pages
24
Grade
A+
Uploaded on
04-03-2024
Written in
2023/2024

WGU D385 - Software and Security Testing_ (WGU Updated Exam Review) With Correct Questions and Answers_ 100% Graded A+ What is the primary defense against log injection attacks? - do not use parameterized stored procedures in the database - allow all users to write to these logs - sanitize outbound log messages - use API calls to log actions - CORRECT ANSWER-- sanitize outbound log messages An attacker exploits a cross-site scripting vulnerability. What is the attacker able to do? - execute a shell command or script - access the user's data - discover other users' credentials - gain access to sensitive files on the server - CORRECT ANSWER-- execute a shell command or script Which Python function is prone to a potential code injection attack? - type - eval - print - append - CORRECT ANSWER-- eval Which package is meant for internal use by Python for regression testing? - regress test - doctest - assert - test - CORRECT ANSWER-- test What are two common defensive coding techniques? - encrypt passwords and email submissions - check functional preconditions and postconditions - adjust length and encoding of messages - develop code with exceptions to find errors - CORRECT ANSWER-- develop code with exceptions to find errors A security analyst is reviewing code for improper input validation. Which type of input validation does this code show? isValidNumber = False while not isValidNumber: try: pickedNumber = int(input('Pick a number from 1 to 10')) if pickedNumber >= 1 and pickedNumber <= 10: isValidNumber = True except: print('You must enter a valid number from 1 to 10') print('You picked the number ' + str(pickedNumber)) - CORRECT ANSWER-- type and range check Consider the following penetration test: import requests urls = open("", "r") for url in urls: url = () req = (url) print (url, 'report try:transport_security = rs['Strict-Transport-Security']except:print ('HSTS header not set properly') -------------------------------------- Which security vulnerability is shown? - cross-site scripting - denial of service - code injection - man-in-the-middle - CORRECT ANSWER-- man-in-the-middle A security analyst has noticed a vulnerability in which an attacker took over multiple user's accounts. Which vulnerability did the security analyst encounter? - broken access control - broken function level authorization - API mass assignment - privilege escalation - CORRECT ANSWER-- broken access control

Show more Read less
Institution
WGU D385 Software Security And Testing
Course
WGU D385 Software Security and Testing










Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
WGU D385 Software Security and Testing
Course
WGU D385 Software Security and Testing

Document information

Uploaded on
March 4, 2024
Number of pages
24
Written in
2023/2024
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Get to know the seller

Seller avatar
Reputation scores are based on the amount of documents a seller has sold for a fee and the reviews they have received for those documents. There are three levels: Bronze, Silver and Gold. The better the reputation, the more your can rely on the quality of the sellers work.
BrooksOfBliss Teachme2-tutor
View profile
Follow You need to be logged in order to follow users or courses
Sold
23
Member since
1 year
Number of followers
12
Documents
299
Last sold
6 months ago
Brooks Of Bliss

Thanks in advance. We are pleased to be here just for you. We are offering the Best materials Already Graded A+ 100% Correct for Your Career Excellence in all your Exams. All the best in your study. Message me if you can not find the document you are looking for and i will assist you. Thanks again for purchasing my documents and Review to help others who need the best documents, kindly also refer others so that they can benefit from my documents ._Brooks of Blisss Here For Your Excellency.

Read more Read less
4.3

6 reviews

5
4
4
0
3
2
2
0
1
0

Recently viewed by you

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions