← All quizzes

💻 Computer Science & IT

Web security essentials

XSS, CSRF, SQL injection, password storage and tokens. The mistakes that actually get people breached.

8questions

mediumdifficulty

+16max XP (1st try)

not rated yet

Question 1 of 8

The correct defence against SQL injection is:

Question 2 of 8

Stored XSS happens when:

Question 3 of 8

What does the SameSite=Lax cookie attribute mitigate?

Question 4 of 8

Which is the right way to store user passwords?

Question 5 of 8

X-Frame-Options: DENY protects against:

Question 6 of 8

A JWT stored in localStorage is most exposed to:

Question 7 of 8

The principle of least privilege means:

Question 8 of 8

Why should a password reset response be the same whether or not the email exists?

0/8 answered

Part of