Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 11 Topic 2 Discussion

ECCouncil Certified Ethical Hacker Exam (CEHv13) 312-50v13 Question # 11 Topic 2 Discussion

312-50v13 Exam Topic 2 Question 11 Discussion:
Question #: 11
Topic #: 2

During an investigation, an ethical hacker discovers that a web application’s API has been compromised, leading to unauthorized access and data manipulation. The attacker is using webhooks and a webshell. To prevent further exploitation, which of the following actions should be taken?


A.

Implement a Web Application Firewall (WAF) with rules to block webshell traffic and increase the logging verbosity of webhooks.


B.

Perform regular code reviews for the webhooks and modify the API to block connections from unknown IP addresses.


C.

Harden the web server security, add multi-factor authentication for API users, and restrict the execution of scripts server-side.


D.

Implement input validation on all API endpoints, review webhook payloads, and schedule regular scanning for webshells.


Get Premium 312-50v13 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.