Question: Please if you are not sure from your answer 100% do not answer this s question. Thanks in advance A company is concerned about man-in-the-middle
A company is concerned about man-in-the-middle attacks against its web application The company's web server is using TLS encryption, the session cookies are using long, high-entropy values and are sent after successful authentication Which of the following additional recommendations should the cybersecurity analyst make to prevent this type of attack? (Select TWO) Disable the use of TLSv1.2 Allow connections only from trusted IP addresses Use certificate pinning on the web server Use HTTP strict transport security Allow only high-security ciphering suites in the web server DE
Step by Step Solution
There are 3 Steps involved in it
Get step-by-step solutions from verified subject matter experts
