Exit 312-50V11 EC-Council Certified Ethical Hacker (C|EH v11)
Question 4 of 5
0% complete
Q4 Single choice

Calvin, a grey-hat hacker, targets a web application that has design flaws in its authentication mechanism.
He enumerates usernames from the login form of the web application, which requests users to feed data and specifies the incorrect field in case of invalid credentials. Later, Calvin uses this information to perform social engineering.

Which of the following design flaws in the authentication mechanism is exploited by Calvin?

  • A

    Insecure transmission of credentials

  • B

    Verbose failure messages

  • C

    User impersonation

  • D

    Password reset mechanism