Study. uk . com
  1. Home
  2. All questions
  3. Question 452

CompTIA Security+ study material · question 452 of 611

Why is a malicious update through a legitimate vendor channel especially hard to stop?

  1. It cannot be assigned a CVE
  2. It defeats source-based filtering because the source is one the organisation deliberately trusts
  3. It is delivered encrypted
  4. It never triggers endpoint detection
Show the answer

Answer: B. It defeats source-based filtering because the source is one the organisation deliberately trusts

Controls built on distinguishing trusted from untrusted sources have no purchase when the trusted source is the vector.

Source: NIST SP 800-161 Rev. 1 (NIST) — SP 800-161 Rev. 1 › Abstract

Challenge yourself on this topic → Study as cards