PrepAway - Latest Free Exam Questions & Answers

A security analyst is reviewing the following output:

Request URL: http://www.largeworldwidebank.org/../../../etc/password
Request Method: GET
Status Code: 200 OK
Remote Address: 107.240.1.127:443
Content-Length: 1245
Content—Type: text/html
Date: Tue, 03 Nov 2020 19:47:14 GMT
Server: Microsoft—IIS/10.0
X-Powered-By: ASP.NET
Accept: text/html,application/xhtml+xml,application/xml;q=0.9,image/webp,image/apng,*/*;q=0.8
Accept—Encoding: gzip, deflate
Accept—Language: en—Us,en;q:0.9
Cache—Control: max—age:0
Connection: keep—alive
Host: www.largeworldwidebank.org/
User—Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/67.0.3396.87 Safari/537.36

Which of the following would BEST mitigate this type of attack?

A. Installing a network firewall

B. Placing a WAF inline

C. Implementing an IDS

D. Deploying a honeypot


Leave a Reply