ISC2 CISSP (Certified Information Systems Security Professional)Communication and Network SecurityMedium
A security analyst is investigating a network attack where an attacker successfully intercepted and modified data being transmitted between two internal servers. The attacker then replayed the modified data to gain unauthorized access. Which of the following security services was primarily compromised in this attack?
- ANon-repudiation
- BIntegrity
- CAvailability
- DConfidentiality
Show answer & explanationAnswer & explanation
Correct answer: B. Integrity
The core issue described is the modification of data in transit and its subsequent replay. This directly compromises the integrity of the data, as it was altered from its original state and then used maliciously.
Why the other options are wrong
- A. Non-repudiation provides undeniable proof of an action or event. While the attacker's actions might prevent non-repudiation, the primary security service compromised by data modification is integrity.
- C. Availability ensures that systems and data are accessible when needed. The attack did not necessarily render the service unavailable.
- D. Confidentiality relates to preventing unauthorized disclosure of information. While the data was intercepted, the primary action of the attacker was modification and replay, not just disclosure.
Integrity (CIA Triad)
The assurance that information is accurate and complete, and has not been subjected to unauthorized modification or destruction.
- Achieved through hashing, digital signatures, access controls.
- Compromised by data tampering, unauthorized changes, or replay attacks.
- Ensures trustworthiness and reliability of data.
Memory trick: CIA: 'C'onfidential, 'I'ntegrity, 'A'vailable.