Certification753 problems· 15 reviewed

정보보안기사

753 incident response problems that help with 정보보안기사 prep.

All problems (753)

SECURITY-1280A scanner still finds a revoked secretAn incident response rotation is complete and secret alerts keep resurfacing from old downloadable support outputs.SecurityIntermediate14 minProSECURITY-1294A secret was rotated everywhere but scanners keep finding itSecret rotation is complete and alerts continue from old CI logs or artifacts tied to a previous variable name.SecurityIntermediate14 minProSECURITY-1276A nonce cookie exists but the app still loops on loginOne sign-in URL works and another alias for the same app loops forever despite matching provider configuration.SecurityIntermediate15 minProSECURITY-1235Login throttling exists but password spray still succeedsAn authentication surface throttles requests by source IP and still suffers sustained password spraying from clients rotating IPv6 addresses.SecurityIntermediate17 minProSECURITY-1245Password spray continues despite rate limitingAn authentication surface limits requests by source IP and still sees sustained password spraying from rotating IPv6 clients.SecurityIntermediate17 minProSECURITY-1255Password spray continues despite rate limitingAn authentication surface limits by source IP and still suffers sustained password spraying from clients rotating IPv6 addresses.SecurityIntermediate17 minProSECURITY-1250Password spraying continues despite rate limitingAn authentication surface limits by source IP and still suffers sustained password spray from clients rotating IPv6 addresses.SecurityIntermediate17 minProSECURITY-1188Alternate proxy path leaves the admin surface reachable even though the canonical route is protectedSecurity scans still reach an admin path because a second proxy route exposes the same upstream without the expected controls.SecurityIntermediate18 minProSECURITY-1230Rate limiting appears to work but attackers still spray passwordsA team relies on IP-based login throttling and later sees abusive authentication continue from rapidly changing IPv6 clients.SecurityIntermediate18 minProSECURITY-1620A JWKS endpoint fix is correct and one verifier still rejects tokensOne verifier still rejects tokens after a JWKS endpoint fix.SecurityIntermediate10 minProSECURITY-1630A JWKS key rotates and one edge verifier still failsOne edge verifier still fails after a JWKS rotation.SecurityIntermediate10 minProSECURITY-1690A browser login is fixed and one app path still failsThe main login page works and one interactive app path still fails after the session fix.SecurityIntermediate11 minProSECURITY-1710A browser login succeeds and one app action still failsOne app action still fails after browser login was fixed.SecurityIntermediate11 minProSECURITY-1760A browser session is healthy and one action still failsOne action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1790A browser session is healthy and one action still failsOne action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1830A browser session is healthy and one action still failsOne action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1780A browser session is healthy and one app action still failsOne action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1800A browser session is healthy and one app action still failsOne app action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1820A browser session is healthy and one app action still failsOne app action still fails after the browser session fix.SecurityIntermediate11 minProSECURITY-1840A browser session is healthy and one app action still failsOne app action still fails after the browser session fix.SecurityIntermediate11 minPro