Chapter 7
Operating System and Application Security
The Following CompTIA Security+ Exam Objectives Are Covered in This Chapter:
- 1.1 Explain the security function and purpose of network devices and technologies.
- URL filtering, content inspection, malware inspection
- 3.5 Analyze and differentiate among types of application attacks.
- SQL injection
- LDAP injection
- XML injection
- Directory traversal/command injection
- Session hijacking
- Header manipulation
- 3.6 Analyze and differentiate among types of mitigation and deterrent techniques.
- Hardening: Disabling unnecessary services; Protecting management interfaces and applications; Password protection; Disabling unnecessary accounts
- 4.1 Explain the importance of application security.
- Fuzzing