Susan is conducting a STRIDE threat assessment by placing threats into one or more of the following categories: Spoofing, Tampering, Repudiation, Information Disclosure, Denial of Service, and Elevation of Privilege. As part of her assessment, she has discovered an issue that allows transactions to be modified between a web browser and the application server that it accesses. What STRIDE categorization(s) best fit this issue?

A. Tampering and Information Disclosure
B. Spoofing and Tampering
C. Tampering and Repudiation
D. Information Disclosure and Elevation of Privilege

Answer: A. Tampering and Information Disclosure

Computer Science & Information Technology

You might also like to view...

Envelopes can be created in Word, Excel, and Access

Indicate whether the statement is true or false

Computer Science & Information Technology

Which of the following buttons should you click to add all fields to the query?

A.
B.
C.
D.

Computer Science & Information Technology