CompTIA Security+ (SY0-701)General Security ConceptsEasy
A file transfer application generates a SHA-256 checksum for a file before sending it and requires the recipient to compare it against a checksum computed after download. Which security principle is being enforced by this checksum comparison?
- AAvailability
- BNon-repudiation
- CConfidentiality
- DIntegrity
Show answer & explanationAnswer & explanation
Correct answer: D. Integrity
Comparing hash values before and after transfer verifies the file was not altered in transit, which is the definition of integrity.
Why the other options are wrong
- A. Availability ensures data is accessible, unrelated to tampering detection.
- B. Non-repudiation requires digital signatures tied to identity, not just a hash comparison.
- C. Confidentiality protects data from unauthorized disclosure, not tampering detection.
Integrity via Hashing
Hashing produces a fixed-length fingerprint of data used to detect unauthorized changes.
- Same input always produces the same hash output
- Any change in data produces a different hash
- Common algorithms: SHA-256, SHA-3
Memory trick: Hash matches mean nothing was touched.