Soru

Zorluk: OrtaHost, Network, and Architecture Vulnerabilities

A security analyst conducts an internal infrastructure assessment of an enterprise application environment. The assessment reveals two critical architectural findings:

1. Web application microservices communicate with back-end database servers across an unsegmented internal subnet using standard unencrypted HTTP endpoints.
2. No host-based firewalls or network access control lists (ACLs) are configured to restrict traffic between adjacent application servers on the same subnet.

Which of the following host, network, or architecture vulnerabilities are directly present in this environment? (Select TWO.)

  1. Transmission of sensitive internal communication over unencrypted cleartext protocolsCevap
  2. Lack of network microsegmentation allowing unrestricted lateral movementCevap
  3. C
    Failure of client-side web browsers to filter malicious Cross-Site Scripting (XSS) payloads
  4. D
    Misclassification of detective log monitoring controls as automated preventive firewalls
  5. E
    Reliance on perimeter web application firewalls to block database buffer overflow exploits

Cevap

The environment suffers from transmission of sensitive internal communication over unencrypted cleartext protocols and a lack of network microsegmentation allowing unrestricted lateral movement.
The correct answers identify the specific architectural weaknesses in the scenario: sending data via HTTP is an unencrypted cleartext protocol flaw, and lacking host firewalls or ACLs on a flat subnet creates a microsegmentation flaw that permits lateral movement.

Adım Adım Çözüm

1
Analyze finding 1 regarding unencrypted HTTP communications.
HTTP transfers data in plain text without cryptographic protection, representing a cleartext protocol vulnerability.
Internal communications transporting data over HTTP expose sensitive information to packet sniffing.
2
Analyze finding 2 regarding flat subnets without host firewalls or ACLs.
The absence of internal traffic controls or subnet boundaries constitutes an architecture vulnerability.
Without microsegmentation or host-based firewall rules, compromised hosts allow unchecked lateral movement across the internal network.

Anahtar Kavram

Host, Network, and Architecture Vulnerabilities (Cleartext Protocols & Microsegmentation)
Bu soruyu puanla