Free CISSP Exam Braindumps (page: 8)

Page 8 of 122

An organization recently suffered from a web-application attack that resulted in stolen user session cookie information. The attacker was able to obtain the information when a user's browser executed a script upon visiting a compromised website. What type of attack MOST likely occurred?

  1. SQL injection (SQLi)
  2. Extensible Markup Language (XML) external entities
  3. Cross-Site Scripting (XSS)
  4. Cross-Site Request Forgery (CSRF)

Answer(s): C



An attack utilizing social engineering and a malicious Uniform Resource Locator (URL) link to take advantage of a victim's existing browser session with a web application is an example of which of the following types of attack?

  1. Clickjacking
  2. Cross-site request forgery (CSRF)
  3. Cross-Site Scripting (XSS)
  4. Injection

Answer(s): B



Which of the following encryption technologies has the ability to function as a stream cipher?

  1. Cipher Block Chaining (CBC) with error propagation
  2. Electronic Code Book (ECB)
  3. Cipher Feedback (CFB)
  4. Feistel cipher

Answer(s): C



In a disaster recovery (DR) test, which of the following would be a trait of crisis management?

  1. Process
  2. Anticipate
  3. Strategic
  4. Wide focus

Answer(s): A



Page 8 of 122



Post your Comments and Discuss ISC CISSP exam with other Community members:

Louis commented on September 20, 2024
I like too much ! How can I downloaded full exame questions!?
MEXICO
upvote

Steve commented on August 28, 2024
I Would Live to share My Experiance that I've Cleared my CISSP Exam Test with the help of CISSP Exam Practice Questions from this site.
UNITED STATES
upvote

Ram commented on July 28, 2024
How do i download the full exam questions?
Anonymous
upvote

Bie commented on June 14, 2022
I pass to day
THAILAND
upvote

SecGeek commented on April 08, 2021
The PDF is great, but the Xengine software tool needs serious work. If one want's to take a quiz in learning mode, they either have the option to see the answers in full or not at all. It would be nice if the answers are hidden and there was a button to press to view the answers, this would provide a better learning method. Also, the Xengine does not allow for randomization of questions to be taken, one has to select a range. Also, it does not allow for the option to select JUST the wrong ones to re-quiz. So all in all, it's nice that allbraindumps.com gives users a ton of questions to practice, but a better test engine should be provided.
Anonymous
upvote