Question
Which of the following is a characteristic of Cross-Site
Request Forgery (CSRF) attacks?Solution
Cross-Site Request Forgery (CSRF) exploits the trust a website has in a user’s browser. An attacker tricks an authenticated user into performing unintended actions, such as transferring money or changing account details, without their consent. For instance, a malicious email link might force a logged-in bank user to transfer money to the attacker’s account.
- Key Condition: The victim must be logged in, as CSRF exploits authenticated sessions.
- Impact: CSRF can lead to unauthorized transactions, changes in user settings, and other unintended operations.
- Prevention: Developers can use anti-CSRF tokens, verify the HTTP Referrer header, and require user re-authentication for sensitive actions.
- Browser vulnerabilities: CSRF exploits user actions and session trust, not browser vulnerabilities.
- SQL commands: This describes SQL Injection, not CSRF.
- Flooding servers: This characterizes DDoS attacks, unrelated to session misuse.
- Script injection: Script injection is XSS, not CSRF.
Coupons and sales are frequently used marketing tactics in which form of competition?
Social media deliberately seek to ensure that the message does not end with an individual receiver. Social media seek to reach __________.
Hello Brands offers many product lines, including sporting equipment and plumbing products. Together, these product lines are referred to as a(n):
When deciding how the products Pepsi One will differ from Diet Pepsi, Pepsi must develop an effective:
Services performed by plastic surgeons or lawyers are primarily evaluated on _____ properties.
Which product below is likely purchased using discretionary income?
An ad for Mother's soup reads, "That great taste your family has always loved, is still here." This is an example of _____ advertising.
How a person establishes expectations for a service they have never purchased but plan to purchase is influenced by each of the following EXCEPT:
Your neighbourhood dry cleaner or florist is likely to be categorized according to its form of retail ownership as an independent retailer. This means i...
A push strategy refers to