A threat actor accesses a list of user email addresses by sending database commands through an insecure login page. What type of attack is this?
A threat actor accesses a list of user email addresses by sending database commands through an insecure login page. What type of attack is this?
- cross-site scripting
- client-side scripting
- iFrame attack
- SQL injection
Explanation: SQL injection occurs when a threat actor sends SQL database commands into an insecure login field.
Related exam: 17.2.8 Check Your Understanding - Network Services Attacks
About The Author
The ITExamAnswers Editorial Team is a dedicated group of certified IT professionals and network engineers. We rigorously review, verify, and update all exam materials to ensure you receive the most accurate and reliable resources for your certification journey.