Study. uk . com
  1. Home
  2. All questions
  3. Question 386

CompTIA Security+ study material · question 386 of 611

Which device can block a SQL injection attempt inside an otherwise permitted HTTPS session?

  1. A stateful network firewall
  2. A web application firewall
  3. A forward proxy
  4. A network intrusion detection system
Show the answer

Answer: B. A web application firewall

A network firewall sees a permitted TCP session; only an HTTP-aware device sees the injection payload.

Challenge yourself on this topic → Study as cards