Question
Which of the following attacks can occur when a user is
tricked into performing unintended actions on a trusted website without their knowledge?Solution
CSRF is an attack where an authenticated user is tricked into performing actions on a website without their consent. The attacker typically sends a malicious link or embeds it in a third-party site, and when the user clicks it, their browser unknowingly sends authenticated requests to the targeted application. This can result in unauthorized transactions, account modifications, or data theft. CSRF exploits the trust that the application places in the user's browser, relying on the lack of proper anti-CSRF measures like tokens. For example, a user logged into their bank account could unknowingly approve a transfer initiated by an attacker. Why Other Options Are Incorrect :
- SQL Injection : This involves injecting malicious queries into databases, unrelated to user actions.
- Distributed Denial-of-Service (DDoS) : This overwhelms servers, making websites unavailable, but doesn’t involve tricking users.
- Credential Stuffing : This uses leaked credentials to gain unauthorized access, unrelated to unintended user actions.
- Buffer Overflow : This exploits memory allocation vulnerabilities, not user behavior.
When was the Competition Commission of India established?
Dying declaration is admissible as evidence before the court of law as per which section of the Indian Evidence Act, 1872?
Which of the following is not a valid defense in an action for tort?
According to the IT Act the term appropriate government means s as respects any matter___________________ the State Government and in any other case, th...
Return of plaint can be done __________
According to section 18 of the MSMED Act any party to a dispute may, with regard to any amount due under section 17, make a reference to the _____________
According to LLP Act the Incorporation document shall ___?
Which of the following is not a negotiable instrument?
What does the principle of "burden of proof" under the Indian Evidence Act state?
How many criminal courts are constituted under Crpc?