Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

CompTIA CAS-005 Exam - Topic 4 Question 25 Discussion

Actual exam question for CompTIA's CAS-005 exam
Question #: 25
Topic #: 4
[All CAS-005 Questions]

A security architect is mitigating a vulnerability that previously led to a web application data breach. An analysis into the root cause of the issue finds the following:

An administrator's account was hijacked and used on several Autonomous System Numbers within 30 minutes.

All administrators use named accounts that require multifactor authentication.

Single sign-on is used for all company applications.Which of the following should the security architect do to mitigate the issue?

Show Suggested Answer Hide Answer
Suggested Answer: B

The hijacked administrator account was used across multiple ASNs (indicating different network locations) in a short time, despite MFA and SSO. This suggests a stolen session or token misuse. Let's analyze:

A . Token theft detection with lockouts:Useful for detecting stolen SSO tokens, but it's reactive and may not prevent initial misuse across networks.

B . Context-based authentication:This adds real-time checks (e.g., geolocation, IP changes) to verify login attempts. Given the rapid ASN changes, this proactively mitigates the issue by challenging suspicious logins, aligning with CAS-005's focus on adaptive security.

C . Decentralize accounts:This removes SSO, increasing complexity and weakening MFA enforcement, which isn't practical or secure.


Contribute your Thoughts:

0/2000 characters
Latosha
18 days ago
I disagree, B could be more effective. Context-based auth adds another layer.
upvoted 0 times
...
Jospeh
23 days ago
Sounds like option A is the best choice here. Locking accounts is crucial!
upvoted 0 times
...
Bobbie
1 month ago
Biometric authentication seems like a strong option, but I wonder if it would be feasible for all administrators to implement.
upvoted 0 times
...
Adelle
2 months ago
I practiced a question about decentralizing accounts, but I feel like that might complicate things more than it helps.
upvoted 0 times
...
Hayley
2 months ago
Context-based authentication sounds familiar; I think it could add an extra layer of security, especially for admins.
upvoted 0 times
...
Yuriko
2 months ago
I remember we discussed how token theft detection could help, but I'm not sure if it would be enough on its own.
upvoted 0 times
...

Save Cancel