FCP_FWB_AD-7.4 · Question #44
An attacker attempts to send an SQL injection attack containing the known attack string 'root'; -- through an API call. Which FortiWeb inspection feature will be able to detect this attack the…
The correct answer is B. Known signatures. The quickest detection for an SQL injection attack like the one described ('root'; --) would be through known signatures. FortiWeb utilizes signature-based detection to match incoming traffic against predefined attack patterns. Since SQL injection attacks are commonly known and…
Question
An attacker attempts to send an SQL injection attack containing the known attack string 'root'; -- through an API call. Which FortiWeb inspection feature will be able to detect this attack the quickest?
Options
- AAPI gateway rule
- BKnown signatures
- CMachine learning (ML)-based API protection--anomaly detection
- DML-based API protection--threat detection
How the community answered
(48 responses)- A8% (4)
- B83% (40)
- C2% (1)
- D6% (3)
Explanation
The quickest detection for an SQL injection attack like the one described ('root'; --) would be through known signatures. FortiWeb utilizes signature-based detection to match incoming traffic against predefined attack patterns. Since SQL injection attacks are commonly known and have specific patterns (such as 'root'; --), known signatures would immediately recognize and flag this
Topics
Community Discussion
No community discussion yet for this question.