Study. uk . com
  1. Home
  2. All questions
  3. Question 588

CompTIA Security+ study material · question 588 of 611

An application loads a plugin from an unverified source at runtime. Which OWASP category does this fall under?

  1. Cryptographic failures
  2. Software and data integrity failures
  3. Security misconfiguration
  4. Broken access control
Show the answer

Answer: B. Software and data integrity failures

Trusting an update or component whose origin is not verified is how a build or delivery pipeline becomes an attack path.

Source: OWASP Top 10 (OWASP) — OWASP Top Ten › Software and Data Integrity Failures

Challenge yourself on this topic → Study as cards