exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 289 discussion

Actual exam question from CompTIA's SY0-701
Question #: 289
Topic #: 1
[All SY0-701 Questions]

A development team is launching a new public-facing web product. The Chief Information Security Officer has asked that the product be protected from attackers who use malformed or invalid inputs to destabilize the system. Which of the following practices should the development team implement?

  • A. Fuzzing
  • B. Continuous deployment
  • C. Static code analysis
  • D. Manual peer review
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
dhewa
Highly Voted 7 months, 2 weeks ago
Selected Answer: A
Fuzzing, or fuzz testing, is an automated software testing technique that involves inputting random, unexpected, or invalid data into a program to identify vulnerabilities. The goal is to discover bugs, crashes, or security issues by monitoring how the program responds to these inputs. Fuzzing is particularly effective for testing software that processes structured data, such as file formats or network protocols.
upvoted 6 times
...
TrebleSmith
Highly Voted 8 months, 1 week ago
Selected Answer: A
Fuzzing is "... involves feeding a system with invalid, unexpected, or random inputs, also known as fuzz, to try to crash it or trigger errors.". This is going to be the best answer for this question.
upvoted 5 times
...
e2ba0ff
Most Recent 5 months, 1 week ago
Selected Answer: C
Static Code analysis: a method of debugging an application by reviewing and examining its source code before running the program. Odentifies issues like SQL injection,XSS and buffer owerflow.Important for proper input validation.
upvoted 1 times
...
BevMe
5 months, 2 weeks ago
Selected Answer: A
Fuzzing
upvoted 2 times
...
Gman530
8 months, 2 weeks ago
Selected Answer: C
■ Static Code Analysis (SAST) ● A method of debugging an application by reviewing and examining its source code before running the program ● Identifies issues like buffer overflows, SQL injection, and XSS ● Important for proper input validation in both front-end and back-end code
upvoted 1 times
...
a4e15bd
8 months, 3 weeks ago
Answer A, Fuzzing is correct.
upvoted 2 times
...
qacollin
8 months, 3 weeks ago
Selected Answer: A
A. GPT
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago