Question: In a major data breach, hackers stole payment card data from an e - commerce application. An analysis of the incident revealed that the development
In a major data breach, hackers stole payment card data from an ecommerce application. An analysis of the incident revealed that the development team had implemented the database access operations using "String concatenation" instead of "Prepared Statement" leading to a dangerous vulnerability known as SQL injection. The company was fined $ million for failing to take adequate security measures which led to the introduction of the preventable SQL injection vulnerability. Which of the following is the likely cause for the introduction of this vulnerability? Lack of media sanitization The development team did not establish an incident response plan Secure coding trainings were not conducted The development team failed to do configuration review before deployment to production
Step by Step Solution
There are 3 Steps involved in it
1 Expert Approved Answer
Step: 1 Unlock
Question Has Been Solved by an Expert!
Get step-by-step solutions from verified subject matter experts
Step: 2 Unlock
Step: 3 Unlock
