What is the consequence of misconfigured HTTP headers?

Top 5: Security Misconfiguration

Quiz
•
Other
•
Professional Development
•
Medium
CSM PSS
Used 2+ times
FREE Resource
10 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
45 sec • 1 pt
Enhanced browser compatibility
Improved server performance
Reduced security, leading to various attacks such as XSS and clickjacking.
Faster loading times
2.
MULTIPLE CHOICE QUESTION
45 sec • 1 pt
Which misconfiguration can potentially expose internal IP addresses and server details?
Secure HTTP headers
Proper CORS configuration
Directory listing misconfiguration
Strong password policies
3.
MULTIPLE SELECT QUESTION
45 sec • 1 pt
To prevent security misconfigurations the developer should:
Use default credentials
Not expose server versions
Whitelist domains/subdomains
Disable insecure HTTP methods
4.
MULTIPLE SELECT QUESTION
45 sec • 1 pt
Which of the following misconfigurations can result in sensitive data exposure? (Select all that apply)
Failing to implement Cross-Origin Resource Sharing (CORS) policies.
Leaving debug mode enabled in production environments.
Not encrypting data at rest.
Weak SSL/TLS configuration
Allowing unnecessary HTTP methods like TRACE and OPTIONS.
5.
MULTIPLE CHOICE QUESTION
45 sec • 1 pt
PUT method can be used by an attacker:
Download sensitive information from the application
Upload files to the application
Delete files from the application
None of the above
6.
MULTIPLE CHOICE QUESTION
45 sec • 1 pt
What is the purpose of a Content Security Policy (CSP) header?
It controls the server's access to client resources.
It prevents clickjacking attacks and code injections by restricting the sources from which certain content can be loaded.
It encrypts sensitive data transmitted between the server and the client.
It ensures secure user authentication and authorization.
7.
MULTIPLE CHOICE QUESTION
45 sec • 1 pt
What security vulnerability is mitigated by using HTTP Strict Transport Security (HSTS) headers?
Cross-Site Scripting (XSS) attacks.
Man-in-the-Middle (MitM) attacks.
Session Fixation attacks.
Clickjacking attacks.
Create a free account and access millions of resources
Similar Resources on Quizizz
10 questions
ISM and ISPS

Quiz
•
Professional Development
10 questions
DMK_U7

Quiz
•
Professional Development
13 questions
Phishing

Quiz
•
Professional Development
15 questions
Insider Threats Quiz

Quiz
•
Professional Development
10 questions
Computerised Accounting

Quiz
•
Professional Development
10 questions
Sales Academy Review Game

Quiz
•
Professional Development
15 questions
ESET Post Training Assessment 2023

Quiz
•
Professional Development
11 questions
Google Information Quiz

Quiz
•
Professional Development
Popular Resources on Quizizz
15 questions
Multiplication Facts

Quiz
•
4th Grade
20 questions
Math Review - Grade 6

Quiz
•
6th Grade
20 questions
math review

Quiz
•
4th Grade
5 questions
capitalization in sentences

Quiz
•
5th - 8th Grade
10 questions
Juneteenth History and Significance

Interactive video
•
5th - 8th Grade
15 questions
Adding and Subtracting Fractions

Quiz
•
5th Grade
10 questions
R2H Day One Internship Expectation Review Guidelines

Quiz
•
Professional Development
12 questions
Dividing Fractions

Quiz
•
6th Grade