nerdexam
CompTIA

ADR-001 · Question #57

Which of the following is a disadvantage of using a static embedded API Key for client authentication to a web service?

The correct answer is D. API Keys can be discovered and abused by an attacker. See the full explanation below for the reasoning.

Question

Which of the following is a disadvantage of using a static embedded API Key for client authentication to a web service?

Options

  • AAPI Keys require the use of a certificate issued by a commercial Certificate Authority.
  • BAPI Keys are used with asymmetric cryptography, which is slow and can negatively impact the
  • CAPI Keys cannot be transmitted over HTTPS, so they are open to compromise.
  • DAPI Keys can be discovered and abused by an attacker.

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    4% (1)
  • C
    16% (4)
  • D
    76% (19)

Community Discussion

No community discussion yet for this question.

Full ADR-001 Practice