Split-Response Flashcards
1
Q
What is a split-response/request attack?
A
- occurs when an attacker is able to manipulate the way a web server processes HTTP requests and responses, leading to potentially malicious outcomes
- can have serious implications for user privacy and security
2
Q
Can accessing browser’s cache lead to split-response attack?
A
yes
3
Q
How does split-response attack work?
A
- split-response attacks can cause the client to download content and store it in the cache that was not an intended element of a requested web page
- once files have been poisoned in the cache, then even when a legitimate web document calls on a cached item, the malicious item will be activated
4
Q
What’s a dissolvable NAC?
A
software agent or application that is used as part of a Network Access Control solution but has a specific characteristic: it is designed to run temporarily and then automatically terminate or “dissolve” itself