100% satisfaction guarantee Immediately available after payment Both online and in PDF No strings attached 4.2 TrustPilot
logo-home
Exam (elaborations)

D385: Security Authentication Final Written Exam | Questions & Answers

Rating
-
Sold
-
Pages
10
Grade
A+
Uploaded on
24-03-2025
Written in
2024/2025

Attack Surface - - the sum of all potential entry points Common examples of attacks that take advantage of systems with insufficient input validation? - - SQLi - RCE - host header attack - denial of service Defense in Depth - - each layer of security is dual-purpose 1) resists an attack 2) acts as a backup when other layers fail Most common symmetric encryption algorithm? - - AES Most common hashing algorithm? -

Show more Read less
Institution
D385
Course
D385









Whoops! We can’t load your doc right now. Try again or contact support.

Written for

Institution
D385
Course
D385

Document information

Uploaded on
March 24, 2025
Number of pages
10
Written in
2024/2025
Type
Exam (elaborations)
Contains
Questions & answers

Subjects

Content preview

D385: Security Authentication Final Written Exam |
Questions & Answers
Attack Surface - ✔✔✔- the sum of all potential entry points



Common examples of attacks that take advantage of systems with insufficient input validation? - ✔✔✔-
SQLi

- RCE

- host header attack

- denial of service



Defense in Depth - ✔✔✔- each layer of security is dual-purpose

1) resists an attack

2) acts as a backup when other layers fail



Most common symmetric encryption algorithm? - ✔✔✔- AES



Most common hashing algorithm? - ✔✔✔- SHA-2



Resource sharing protocol for browsers? - ✔✔✔- CORS

- Cross-origin resource sharing



CSP - ✔✔✔- Content Sharing Policy

- browser-based attack mitigation standard



Security Fundamentals - ✔✔✔- Data integrity: has the data changed

- Authentication: who are you?

- Data authentication: who created the data?

- Nonrepudiation: who did what?

, - Authorization: what can you do?

- Confidentiality: who can access this?



Python's answer to cryptographic hashing? - ✔✔✔- hashlib module



Secure random number generation? - ✔✔✔- secrets module



Hash-based message authentication? - ✔✔✔- hmac module



Function used to protect passwords? - ✔✔✔- argon2-cffi



Python package for common cryptographic functions? - ✔✔✔- cryptography



A safer way to parse XML? - ✔✔✔- defusedxml



Web server gateway interface written in Python? - ✔✔✔- Gunicorn



Python package manager? - ✔✔✔- pipenv



Easy-to-use HTTP library? - ✔✔✔- requests



Client-side OAuth 2.0 implementation? - ✔✔✔- requests-oauthlib



Django server-side implementation for CORS? - ✔✔✔- django-cors-headers



Server-side implementation of CSP? - ✔✔✔- django-csp



Server-side OAuth 2.0 implementation? - ✔✔✔- DJango Oauth Toollkit
$7.99
Get access to the full document:

100% satisfaction guarantee
Immediately available after payment
Both online and in PDF
No strings attached

Get to know the seller
Seller avatar
RISEPREP

Get to know the seller

Seller avatar
RISEPREP Oxford University
View profile
Follow You need to be logged in order to follow users or courses
Sold
1
Member since
1 year
Number of followers
1
Documents
354
Last sold
1 month ago
Get Quality of Document

Hello I'm a passionate and experienced online tutor. I offer support to help students succeed. you can access study materials, notes, and guides to help you excel academically I am hear to help you. review so as to know the quality of service offered & to better improve your expirience. thank you and welcome back. BONUS! BONUS! BONUS! For every student you refer to me with an order that is completed and paid transparently, I will give you one free study document you need or do one assignment for you, free of charge!Thank you Very much for the purchase Kindly leave a Review to help know the Quality of Document and those who have reviewed thanks again

Read more Read less
0.0

0 reviews

5
0
4
0
3
0
2
0
1
0

Why students choose Stuvia

Created by fellow students, verified by reviews

Quality you can trust: written by students who passed their tests and reviewed by others who've used these notes.

Didn't get what you expected? Choose another document

No worries! You can instantly pick a different document that better fits what you're looking for.

Pay as you like, start learning right away

No subscription, no commitments. Pay the way you're used to via credit card and download your PDF document instantly.

Student with book image

“Bought, downloaded, and aced it. It really can be that simple.”

Alisha Student

Frequently asked questions