nerdexam
GAQM

CPEH-001 · Question #65

Assume a business-crucial web-site of some company that is used to sell handsets to the customers worldwide. All the developed components are reviewed by the security team on a monthly basis. In…

The correct answer is A. External script contents could be maliciously modified without the security team knowledge. See the full explanation below for the reasoning.

Question

Assume a business-crucial web-site of some company that is used to sell handsets to the customers worldwide. All the developed components are reviewed by the security team on a monthly basis. In order to drive business further, the web-site developers decided to add some 3rd party marketing tools on it. The tools are written in JavaScript and can track the customer's activity on the site. These tools are located on the servers of the marketing company. What is the main security risk associated with this scenario?

Options

  • AExternal script contents could be maliciously modified without the security team knowledge
  • BExternal scripts have direct access to the company servers and can steal the data from there
  • CThere is no risk at all as the marketing services are trustworthy
  • DExternal scripts increase the outbound company data traffic which leads greater financial losses

How the community answered

(27 responses)
  • A
    78% (21)
  • B
    11% (3)
  • C
    4% (1)
  • D
    7% (2)

Community Discussion

No community discussion yet for this question.

Full CPEH-001 Practice