Question
Which of the following is a characteristic of Cross-Site
Request Forgery (CSRF) attacks?Solution
Cross-Site Request Forgery (CSRF) exploits the trust a website has in a user’s browser. An attacker tricks an authenticated user into performing unintended actions, such as transferring money or changing account details, without their consent. For instance, a malicious email link might force a logged-in bank user to transfer money to the attacker’s account.
- Key Condition: The victim must be logged in, as CSRF exploits authenticated sessions.
- Impact: CSRF can lead to unauthorized transactions, changes in user settings, and other unintended operations.
- Prevention: Developers can use anti-CSRF tokens, verify the HTTP Referrer header, and require user re-authentication for sensitive actions.
- Browser vulnerabilities: CSRF exploits user actions and session trust, not browser vulnerabilities.
- SQL commands: This describes SQL Injection, not CSRF.
- Flooding servers: This characterizes DDoS attacks, unrelated to session misuse.
- Script injection: Script injection is XSS, not CSRF.
Money market is a market for ___ (1) ___ funds having maturity of ___ (2) ___.
Which of the following Provident Fund is exempt up to 12% of employee's salary, from employer's contribution?
Which report will be submitted by an auditor, if he is dissatisfied regarding the facts and information?
Amount paid for stationery during 2022-23        ₹ 80,000
Creditors for Stationery on March, 31, 2023       ₹ 7,...
Calculate the average age of inventory(Assume 360 days in a year):
Which of the following is an application area of Grid Computing?Â
Under the MSE-CDP Scheme, what is the Government of India subsidy percentage for new Common Facility Centres (CFCs) with a project cost between ₹5–1...
Which of the following is a limitation of accounting that can affect the accuracy and usefulness of financial statements?
Who is the regulator of the corporate sector?
Read the following information to answer the below questions:Â