Free CompTIA CySA+ CS0-003 Practice Question

Your team is tasked with conducting a security assessment on a proprietary web application. They've decided to use fuzzing to identify potential input validation issues that could lead to security vulnerabilities. Which of the following methods best describes their approach to finding these issues?

  • Performing legitimate transactions on the application to verify if the responses are as expected.

  • Scanning the source code with static analysis tools to identify vulnerabilities.

  • Using network sniffing tools to intercept and analyze traffic between the client and application server.

  • Providing random and malformed data to the application forms to identify handling errors.

This question's topic:
CompTIA CySA+ CS0-003 / 
Vulnerability Management
Your Score:

Check or uncheck an objective to set which questions you will receive.