Cisco CyberOps Associate (CBROPS) 200-201Security ConceptsMedium
A security auditor is reviewing a web application and discovers that it is vulnerable to cross-site request forgery (CSRF) attacks. This vulnerability means that a malicious website could trick a user's browser into sending an authenticated request to the vulnerable application. Which security principle is most directly violated by this vulnerability?
- AConfidentiality
- BIntegrity
- CNon-repudiation
- DAvailability
Show answer & explanationAnswer & explanation
Correct answer: B. Integrity
CSRF attacks manipulate an authenticated user's browser to send forged requests, leading to unauthorized state-changing actions (e.g., changing passwords, making purchases). This directly compromises the integrity of the data or actions within the application, as unauthorized changes can be made without the user's explicit consent.
Why the other options are wrong
- A. Confidentiality relates to preventing unauthorized disclosure of information, not unauthorized modification of data or actions.
- C. Non-repudiation ensures that an action cannot be denied by the perpetrator, which is not the primary concern of CSRF.
- D. Availability ensures that systems and data are accessible when needed, not directly impacted by CSRF in this scenario.
Integrity (CIA Triad)
The security principle that ensures data and systems are protected from unauthorized modification or destruction, and that data is accurate, consistent, and trustworthy.
- Prevents tampering and unauthorized changes.
- Maintained through access controls, hashing, digital signatures.
- Aims for accuracy and completeness of data.
Memory trick: Confidentiality: Keep secrets. Integrity: Keep things true. Availability: Keep things working.