CompTIA
ADR-001 · Question #57
Which of the following is a disadvantage of using a static embedded API Key for client authentication to a web service?
The correct answer is D. API Keys can be discovered and abused by an attacker. See the full explanation below for the reasoning.
Question
Which of the following is a disadvantage of using a static embedded API Key for client authentication to a web service?
Options
- AAPI Keys require the use of a certificate issued by a commercial Certificate Authority.
- BAPI Keys are used with asymmetric cryptography, which is slow and can negatively impact the
- CAPI Keys cannot be transmitted over HTTPS, so they are open to compromise.
- DAPI Keys can be discovered and abused by an attacker.
How the community answered
(25 responses)- A4% (1)
- B4% (1)
- C16% (4)
- D76% (19)
Community Discussion
No community discussion yet for this question.