Lesson 5 - Output Handling

Lesson 5 - Output Handling

University

10 Qs

quiz-placeholder

Similar activities

PHP Tours Meetup #27 Sécurité et vulnérabilités Web

PHP Tours Meetup #27 Sécurité et vulnérabilités Web

University - Professional Development

9 Qs

Web Application Security Quiz

Web Application Security Quiz

University

10 Qs

W10

W10

University

10 Qs

Week 10 - Cyber Attacks Exercise 2

Week 10 - Cyber Attacks Exercise 2

University

10 Qs

Vulnerability Research and Tools

Vulnerability Research and Tools

University

15 Qs

Q1_PlatformTech

Q1_PlatformTech

University

10 Qs

Cyber Threats

Cyber Threats

9th Grade - University

14 Qs

PHP Tours Meetup #35 Atelier Pratique sécurité web : DVWA

PHP Tours Meetup #35 Atelier Pratique sécurité web : DVWA

University

10 Qs

Lesson 5 - Output Handling

Lesson 5 - Output Handling

Assessment

Quiz

Computers

University

Medium

Created by

Babak Brad

Used 44+ times

FREE Resource

10 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Media Image

Which of the following statements is incorrect in XSS attack?

A

B

C

D

2.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Cross-site Scripting may be used to hijack cookie-based sessions.

True

False

3.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Media Image

What is the first step in simplest possible session hijacking using Cross-site Scripting?

A

B

C

D

4.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Media Image

What is the main task of injected script by attacker in XSS-based session hijacking?

A

B

C

D

5.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

In a XSS session hijacking, the attacker connects directly to the web site, he can get victim's unique cookie, _______________.

only if the victim is logged in

only if the victim is logged out

and does not matter victim is logged in or not

but he has no full access at the same level of victim

6.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

Attacker used a script to change data displayed to bank clerk for manual inspection. This can be successful because of __________________.

vulnerability in the bank database

inappropriate output handling in web application

not escaping shell meta-characters

careless manual inspection by clerk

7.

MULTIPLE CHOICE QUESTION

2 mins • 1 pt

In general, Cross-site Scripting is a _______________.

network layer problem

input validation problem

shell problem

metacharacter problem

Create a free account and access millions of resources

Create resources
Host any resource
Get auto-graded reports
or continue with
Microsoft
Apple
Others
By signing up, you agree to our Terms of Service & Privacy Policy
Already have an account?