nerdexam
EC-Council

312-39 · Question #151

Wesley is an incident handler in a company named Maddison Tech. One day, he was learning techniques for eradicating the insecure deserialization attacks. What among the following should Wesley avoid f

Sign in or unlock 312-39 to reveal the answer and full explanation for question #151. The question stem and answer options stay visible for context.

Security Incident Response

Question

Wesley is an incident handler in a company named Maddison Tech. One day, he was learning techniques for eradicating the insecure deserialization attacks. What among the following should Wesley avoid from considering?

Options

  • ADeserialization of trusted data must cross a trust boundary
  • BUnderstand the security permissions given to serialization and deserialization
  • CAllow serialization for security-sensitive classes
  • DValidate untrusted input, which is to be serialized to ensure that serialized data contain only

Unlock 312-39 to see the answer

You've previewed enough free 312-39 questions. Unlock 312-39 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#insecure deserialization#eradication techniques#secure coding#serialization security
Full 312-39 Practice