Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Cisco 200-901 Exam - Topic 1 Question 98 Discussion

Which type of OWASP threat forges a malicious HTTP request into an application?
C) CSRF
A) Clickjacking
B) SQL Injection
D) XSS

Cisco 200-901 Exam - Topic 1 Question 98 Discussion

Actual exam question for Cisco's 200-901 exam
Question #: 98
Topic #: 1
[All 200-901 Questions]

Which type of OWASP threat forges a malicious HTTP request into an application?

Show Suggested Answer Hide Answer
Suggested Answer: C

Cross-Site Request Forgery (CSRF) is a type of attack that forges a malicious HTTP request and sends it from a user's browser to a different site where the user is authenticated. The attacker tricks the user into executing unwanted actions on a web application in which the user is currently authenticated. This can lead to unauthorized actions being performed on the user's behalf.


Cisco DevNet Associate Certification Guide

OWASP CSRF Prevention Cheat Sheet

Contribute your Thoughts:

0/2000 characters
Bo
8 months ago
I thought SQL Injection was the main one for this.
upvoted 0 times
...
Chau
9 months ago
Totally agree, CSRF is sneaky like that.
upvoted 0 times
...
Carline
9 months ago
CSRF is the one that forges malicious requests!
upvoted 0 times
...
Margret
9 months ago
Clickjacking is more about UI manipulation, not requests.
upvoted 0 times
...
Brock
9 months ago
Wait, isn't XSS also a threat?
upvoted 0 times
...
Cyndy
9 months ago
I feel like XSS could be related, but it’s more about injecting scripts rather than forging requests. CSRF seems more likely to be the right choice.
upvoted 0 times
...
Roxane
10 months ago
Clickjacking sounds familiar, but I don't think it directly forges requests. I might be mixing it up with something else.
upvoted 0 times
...
Layla
10 months ago
I remember practicing a question about SQL Injection, but that doesn't really fit with HTTP requests like CSRF does.
upvoted 0 times
...
Gail
10 months ago
I think the answer might be CSRF since it involves forging requests, but I'm not completely sure.
upvoted 0 times
...
Twana
10 months ago
I've got a good handle on OWASP threats, and I think CSRF is the one that fits this question best. Forging a malicious HTTP request is the key characteristic.
upvoted 0 times
...
Maryann
11 months ago
I'm a bit confused on the differences between these OWASP threats. Maybe I should review my notes before answering this one.
upvoted 0 times
...
Lyndia
11 months ago
Okay, let's see... CSRF sounds like the right answer here, as it involves forging a malicious HTTP request. I'll go with that.
upvoted 0 times
...
Matilda
11 months ago
Hmm, I'm a bit unsure about this one. I'll have to think it through carefully to make sure I don't mix up the different OWASP threats.
upvoted 0 times
...
Myra
11 months ago
I'm pretty sure this is a CSRF (Cross-Site Request Forgery) attack, where an attacker forges a malicious HTTP request to the application.
upvoted 0 times
...
Kristin
1 year ago
I'm going with C. CSRF. It's like the chameleon of web attacks - blends right in with the rest of the traffic. Sneaky stuff!
upvoted 0 times
...
Deja
1 year ago
C. CSRF. I've heard it's like the ninja of web attacks - stealthy and hard to detect. Gotta stay on your toes!
upvoted 0 times
Evangelina
1 year ago
C. CSRF. I've heard it's like the ninja of web attacks - stealthy and hard to detect. Gotta stay on your toes!
upvoted 0 times
...
Lucina
1 year ago
D) XSS
upvoted 0 times
...
Kindra
1 year ago
C) CSRF
upvoted 0 times
...
Ivette
1 year ago
B) SQL Injection
upvoted 0 times
...
Tamra
1 year ago
A) Clickjacking
upvoted 0 times
...
...
Elvera
1 year ago
Hmm, I'd say B. SQL Injection. You can use that to manipulate the database and do all sorts of nasty things.
upvoted 0 times
Lea
1 year ago
I agree, it's crucial to have proper security measures in place to prevent SQL Injection.
upvoted 0 times
...
Brandon
1 year ago
Definitely, it's important to protect against SQL Injection attacks.
upvoted 0 times
...
Katina
1 year ago
Yeah, SQL Injection is a serious threat. It can really mess up a database.
upvoted 0 times
...
Stephen
1 year ago
D) XSS
upvoted 0 times
...
Vannessa
1 year ago
C) CSRF
upvoted 0 times
...
Kiera
1 year ago
C) CSRF
upvoted 0 times
...
Eden
1 year ago
That's correct. SQL Injection is a serious threat that can allow attackers to manipulate the database.
upvoted 0 times
...
Catalina
1 year ago
B) SQL Injection
upvoted 0 times
...
Abel
1 year ago
B) SQL Injection
upvoted 0 times
...
Marion
1 year ago
A) Clickjacking
upvoted 0 times
...
...
Alonzo
1 year ago
I believe the correct answer is C) CSRF because it involves forging malicious requests.
upvoted 0 times
...
Lonny
1 year ago
I'm not sure, but I think XSS could also be a possibility.
upvoted 0 times
...
Jaclyn
1 year ago
I agree with Lawrence, CSRF seems like the right choice.
upvoted 0 times
...
Remona
1 year ago
CSRF, for sure! That's when you trick a user into making a malicious request to the app. Gotta watch out for those sneaky hackers!
upvoted 0 times
Brande
1 year ago
Definitely! It's important to implement proper security measures to prevent CSRF attacks.
upvoted 0 times
...
Sena
1 year ago
Yes, CSRF is a serious threat. It can lead to unauthorized actions being performed on behalf of the user.
upvoted 0 times
...
Samira
1 year ago
CSRF, for sure! That's when you trick a user into making a malicious request to the app. Gotta watch out for those sneaky hackers!
upvoted 0 times
...
...
Lawrence
1 year ago
I think the answer is C) CSRF.
upvoted 0 times
...

Save Cancel