C is the correct Answer according to ECSAv10. If HTTP cookies are being used as the transmission mechanism for session tokens and the secure flag is not set, attackers can replay the cookie to gain unauthorized access to the application.
Attackers can use session cookies to perform session hijacking, session replay, and Man-in-the-Middle attacks
should be session hijacking. The alternative name for session hijacking is "Cookie Hijacking"
upvoted 1 times
...
This section is not available anymore. Please use the main Exam Page.412-79v8 Exam Questions
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
TCW
4 years, 10 months agoMijesiv
5 years, 6 months ago