ECSS Exam Question 31

Which two security components should you implement on the sales personnel portable computers to increase security?
(Click the Exhibit button on the toolbar to see the case study.)
Each correct answer represents a complete solution. Choose two.
  • ECSS Exam Question 32

    Kevin logged into a banking application with his registered credentials and tried to transfer some amount from his account to Flora's account. Before transferring the amount to Flora's account, the application sent an OTP to Kevin's mobile for confirmation.
    Which of the following authentication mechanisms is employed by the banking application in the above scenario?
  • ECSS Exam Question 33

    Stella, a mobile user, often ignores the messages received from the manufacturer for updates. One day, she found that files in her device are being replaced, she immediately rushed to the nearest service center for inquiry. They tested the device and identified vulnerabilities in it as it ran with an obsolete OS version.
    Identify the mobile device security risk raised on Stella's device in the above scenario.
  • ECSS Exam Question 34

    Bob.
    a security specialist at an organization, extracted the following IIS log from a Windows-based server:
    "2019-12-12 06:11:41 192.168.0.10 GET /images/content/bg_body_l.jpg - 80 - 192.168.0.27 Mozilla/5.0 (Windows*NT 6.3:*WOW64)*AppleWebKit/537.36*(KHTML.*like Cecko)*Chrome/48.0.2564.103 Safari/5
    http://www.movie5cope.com/css/style.c5s 200 0 0 365"
    Identify the element in the above IIS log entry that indicates the request was fulfilled without error.
  • ECSS Exam Question 35

    Mark, an attacker, aims to access an organization's internal server, but the local firewall implementation restricted him from achieving this objective. To overcome this issue, he started sending specially crafted requests to the public server, through which he gained access to the local server.
    Identify the type of attack initiated by Mark in the above scenario.