A security analyst is reviewing a web application. If an unauthenticated user tries to access a page in the application, the user is redirected to the login page. After successful authentication, the user is then redirected back to the original page. Some users have reported receiving phishing emails with a link that takes them to the application login page but then redirects to a fake login page after successful authentication. Which of the following will remediate this software vulnerability?
A) Enforce unique session IDs for the application.
B) Deploy a WAF in front of the web application.
C) Check for and enforce the proper domain for the redirect.
D) Use a parameterized query to check the credentials.
E) Implement email filtering with anti-phishing protection.
Correct Answer:
Verified
Q33: A Chief Information Security Officer (CISO) is
Q34: A security analyst has received information from
Q35: A network attack that is exploiting a
Q36: Which of the following BEST describes the
Q37: A product manager is working with an
Q39: During routine monitoring, a security analyst discovers
Q40: A security analyst needs to reduce the
Q41: While analyzing logs from a WAF, a
Q42: Which of the following BEST articulates the
Q43: Which of the following would a security
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents