โ† All CBSE Flashcard Decks

Enterprise Blockchain Security Flashcards

7 cards from real CBSE practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Enterprise Blockchain Security flashcards as text
  1. In a Hyperledger Fabric channel, what is the effect of setting the 'Admins' policy to 'ANY Admins' instead of 'MAJORITY Admins'?

    Answer: It weakens governance by allowing a single admin to make unilateral changes

    Setting the policy to ANY Admins means one compromised administrator can unilaterally alter channel configuration, reducing the security of the governance model.

  2. What distinguishes an 'eclipse attack' from a '51% attack' in enterprise blockchain security?

    Answer: Eclipse attacks isolate a node by controlling its peer connections; 51% attacks target consensus

    An eclipse attack monopolizes a victim node's peer connections to feed it a false view of the network, while a 51% attack compromises consensus by controlling majority hash/stake power.

  3. A Solidity smart contract stores a user's balance in a mapping and uses tx.origin for authorization. Why is this a security vulnerability?

    Answer: A malicious contract can trick the user into calling it, forwarding tx.origin authorization

    tx.origin always refers to the original externally owned account, so a malicious intermediate contract can leverage the victim's authorization context through phishing.

  4. Which regulatory framework specifically governs data privacy implications of storing personal data on an immutable enterprise blockchain in the EU?

    Answer: GDPR (General Data Protection Regulation)

    GDPR's 'right to erasure' creates a direct conflict with blockchain immutability, requiring enterprises to use off-chain storage or cryptographic deletion techniques for EU personal data.

  5. What is the primary security risk associated with using 'delegatecall' in Solidity smart contracts?

    Answer: It executes callee logic in the caller's storage context, enabling storage collisions

    delegatecall runs the called contract's code using the caller's storage layout, so storage slot mismatches between the proxy and implementation can corrupt critical state.

  6. An enterprise deploys a blockchain solution where nodes are geographically distributed across multiple jurisdictions. Which threat is MOST relevant to the cross-border node topology?

    Answer: Data sovereignty violations and jurisdictional seizure of node data

    Nodes in different countries may be subject to local laws requiring data disclosure or seizure, creating data sovereignty and compliance risks for enterprise blockchain operators.

  7. In the context of enterprise blockchain, what does 'chaincode lifecycle endorsement' in Hyperledger Fabric 2.x prevent?

    Answer: Unauthorized chaincode deployment without sufficient organization approval

    Fabric 2.x requires a configurable number of organizations to approve chaincode before it can be committed, preventing any single org from unilaterally deploying malicious code.