Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

BCS CISMP-V9 Exam - Topic 1 Question 29 Discussion

What type of attack attempts to exploit the trust relationship between a user client based browser and server based websites forcing the submission of an authenticated request to a third party site?
D) CSRF.
A) XSS.
B) Parameter Tampering
C) SQL Injection.

BCS CISMP-V9 Exam - Topic 1 Question 29 Discussion

Actual exam question for BCS's CISMP-V9 exam
Question #: 29
Topic #: 1
[All CISMP-V9 Questions]

What type of attack attempts to exploit the trust relationship between a user client based browser and server based websites forcing the submission of an authenticated request to a third party site?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

0/2000 characters
Jarvis
10 months ago
Nah, SQL Injection is way more common than CSRF.
upvoted 0 times
...
Lashaunda
10 months ago
Wait, CSRF? I didn't know it was that specific!
upvoted 0 times
...
Valentine
10 months ago
Parameter tampering is a different thing, right?
upvoted 0 times
...
Denna
10 months ago
I thought it was XSS at first, but CSRF makes more sense.
upvoted 0 times
...
Rodrigo
11 months ago
Definitely CSRF, it's all about that trust issue!
upvoted 0 times
...
Natalie
11 months ago
Hmm, I'm a bit unsure about this one. I'm not sure if it's my place as the Scrum Master to get involved in the budget discussion, since it seems like the Product Owner's meeting. Maybe I'd just try to keep things calm and ask for a short break to let people cool off.
upvoted 0 times
...
Tanja
11 months ago
Hmm, I'm not sure about this one. I'll have to think it through carefully. Maybe I can find some examples in the documentation to help me figure it out.
upvoted 0 times
...
Golda
11 months ago
I'm not totally confident on this one. I'll have to guess and hope for the best.
upvoted 0 times
...
Jerry
11 months ago
I'm confident that option B is the correct answer. The use of data from connected devices to make decisions that impact individuals is a prime example of the privacy concerns surrounding the Internet of Things. This is the most relevant and specific choice.
upvoted 0 times
...
Lawana
11 months ago
I feel confident about this one. The SMTP filter is definitely the way to go. Block that domain and move on to the next question.
upvoted 0 times
...

Save Cancel