CompTIA Security+ (SY0-701)General Security ConceptsEasy

A file transfer application generates a SHA-256 checksum for a file before sending it and requires the recipient to compare it against a checksum computed after download. Which security principle is being enforced by this checksum comparison?

  1. AAvailability
  2. BNon-repudiation
  3. CConfidentiality
  4. DIntegrity
Show answer & explanation

Correct answer: D. Integrity

Comparing hash values before and after transfer verifies the file was not altered in transit, which is the definition of integrity.

Why the other options are wrong

  • A. Availability ensures data is accessible, unrelated to tampering detection.
  • B. Non-repudiation requires digital signatures tied to identity, not just a hash comparison.
  • C. Confidentiality protects data from unauthorized disclosure, not tampering detection.

Integrity via Hashing

Hashing produces a fixed-length fingerprint of data used to detect unauthorized changes.

  • Same input always produces the same hash output
  • Any change in data produces a different hash
  • Common algorithms: SHA-256, SHA-3

Memory trick: Hash matches mean nothing was touched.

More General Security Concepts questions