An administrator reviewing host infrastructure discovers an unauthenticated monitoring service running on an internal host inside the enterprise network. The service exposes internal environment variables and process memory to any connected endpoint. The service was left unauthenticated under the assumption that internal network segments are inherently secure. Which of the following vulnerabilities is primarily illustrated in this architecture scenario?
- Over-reliance on perimeter security and lack of host-level access verificationCevap
- BMisconfiguration of a Cross-Site Scripting (XSS) sanitization rule on the host web application
- CMisclassifying the endpoint monitoring service as a detective control rather than a corrective control
- DSelecting an inline network packet filter to prevent host buffer overflows
Cevap
Over-reliance on perimeter security and lack of host-level access verification
The correct answer identifies over-reliance on perimeter security. Leaving services unauthenticated based on the assumption that internal network traffic is safe exposes host data whenever an attacker gains internal access or pivots across network segments.
Adım Adım Çözüm
Anahtar Kavram
Perimeter Trust Dependence vs. Host-Level Verification
Tahmini Süre:50s