โ† All Certified Ethical Hacker Flashcard Decks

Web Application Security Flashcards

6 cards from real Certified Ethical Hacker practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 Web Application Security flashcards as text
  1. What is SQL injection and how is it typically exploited?

    Answer: Inserting malicious SQL code into application input fields to manipulate the database

    SQL injection exploits applications that incorporate user input into SQL queries without proper sanitization, allowing attackers to read, modify, or delete database data, bypass authentication, or execute OS commands.

  2. What is Cross-Site Scripting (XSS) and what are its types?

    Answer: Injecting malicious scripts into web pages viewed by other users; types include stored, reflected, and DOM-based

    XSS allows attackers to inject client-side scripts into web pages. Stored XSS persists in the database, reflected XSS bounces off the server in responses, and DOM-based XSS manipulates the page's DOM directly.

  3. What is CSRF (Cross-Site Request Forgery)?

    Answer: Forcing an authenticated user's browser to send unauthorized requests to a web application

    CSRF tricks a victim's browser into making unwanted requests to a web application where they're authenticated, exploiting the trust that a site has in the user's browser to perform actions without the user's knowledge.

  4. What is the OWASP Top 10?

    Answer: A regularly updated list of the ten most critical web application security risks

    The OWASP Top 10 is a standard awareness document identifying the most critical web application security risks, updated periodically, serving as a benchmark for web security best practices worldwide.

  5. What is session hijacking and how can it be prevented?

    Answer: Stealing or predicting a valid session token to gain unauthorized access; prevented with HTTPS, secure cookies, and token rotation

    Session hijacking involves stealing, predicting, or brute-forcing session tokens (cookies, URLs) to impersonate an authenticated user. Prevention includes HTTPS, HttpOnly/Secure cookie flags, session timeouts, and token regeneration.

  6. What is directory traversal (path traversal) attack?

    Answer: Manipulating file path inputs to access files outside the intended directory

    Directory traversal uses sequences like ../ in file path parameters to escape the intended directory and access sensitive files (e.g., /etc/passwd, configuration files) on the server that should not be accessible.