Chapter 3

Analyzing Potential Indicators Associated with Application Attacks

This chapter covers the following topics related to Objective 1.3 (Given a scenario, analyze potential indicators associated with application attacks) of the CompTIA Security+ SY0-601 certification exam:

  • Privilege escalation

  • Cross-site scripting

  • Injections

    • Structured query language (SQL)

    • Dynamic link library (DLL)

    • Lightweight directory access protocol (LDAP)

    • Extensible markup language (XML)

  • Pointer/object dereference

  • Directory traversal

  • Buffer overflows

  • Race conditions (Time of check/time of use)

  • Error handling

  • Improper input handling

  • Replay attack (session replays)

  • Integer overflow

  • Request forgeries

    • Server-side

    • Cross-site

  • Application programming interface (API) ...

Get CompTIA Security+ SY0-601 Cert Guide, 5th Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.