Soru

Zorluk: KolayHost, Network, and Architecture Vulnerabilities

An administrator reviewing host infrastructure discovers an unauthenticated monitoring service running on an internal host inside the enterprise network. The service exposes internal environment variables and process memory to any connected endpoint. The service was left unauthenticated under the assumption that internal network segments are inherently secure. Which of the following vulnerabilities is primarily illustrated in this architecture scenario?

  1. Over-reliance on perimeter security and lack of host-level access verificationCevap
  2. B
    Misconfiguration of a Cross-Site Scripting (XSS) sanitization rule on the host web application
  3. C
    Misclassifying the endpoint monitoring service as a detective control rather than a corrective control
  4. D
    Selecting an inline network packet filter to prevent host buffer overflows

Cevap

Over-reliance on perimeter security and lack of host-level access verification
The correct answer identifies over-reliance on perimeter security. Leaving services unauthenticated based on the assumption that internal network traffic is safe exposes host data whenever an attacker gains internal access or pivots across network segments.

Adım Adım Çözüm

1
Analyze the reported host architecture vulnerability scenario.
Identified an unauthenticated service exposing host memory to any device on the internal network.
Understanding what resource is exposed and under what access conditions highlights the core weakness.
2
Evaluate the underlying design assumption mentioned in the scenario.
Recognized that reliance on internal network safety without local service authentication reflects legacy perimeter-based trust.
Zero Trust principles dictate continuous verification regardless of network location.

Anahtar Kavram

Perimeter Trust Dependence vs. Host-Level Verification
Tahmini Süre:50s
Bu soruyu puanla