exam questions

Exam SY0-701 All Questions

View all questions & answers for the SY0-701 exam

Exam SY0-701 topic 1 question 8 discussion

Actual exam question from CompTIA's SY0-701
Question #: 8
Topic #: 1
[All SY0-701 Questions]

An organization’s internet-facing website was compromised when an attacker exploited a buffer overflow. Which of the following should the organization deploy to best protect against similar attacks in the future?

  • A. NGFW
  • B. WAF
  • C. TLS
  • D. SD-WAN
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
CookieChip
Highly Voted 11 months ago
B is the correct one B. WAF (Web Application Firewall) A. NGFW (Next-Generation Firewall) C. TLS (Transport Layer Security) D. SD-WAN (Software-Defined Wide Area Network)
upvoted 16 times
AaronR2000
2 months, 1 week ago
A lot of the questions test your knowledge of the acronyms. Spelling it out like this helps!
upvoted 2 times
...
...
Mehsotopes
Highly Voted 11 months, 1 week ago
Selected Answer: B
A Web Application Firewall (WAF) is for ensuring the security of an HTTP application like WordPress, or Magneto against threats like SQL injection, or XSS.
upvoted 14 times
...
JackExam2025
Most Recent 1 month, 3 weeks ago
Selected Answer: B
WAF is the best solution for preventing application-specific attacks like buffer overflows
upvoted 1 times
...
Hasss
2 months ago
Selected Answer: B
web APP fireeall
upvoted 1 times
...
AlternateEgo
3 months, 1 week ago
Selected Answer: B
I can see why the "correct" answer is WAF, but the question is silly. Why use your WAF to try to block buffer overflow attacks? Why not have the application developers add or fix input validation on the web forms, which is what's really needed. How would you know what bit-length to restrict inputs to for your WAF rule without consulting the developers? And if you are consulting the developers about this, just have then fix it at the source. I'm all for defense in depth, but it doesn't seem realistic to try to block this at the WAF or NGFW.
upvoted 3 times
...
Fatneck
4 months, 2 weeks ago
Selected Answer: B
The answer is B and not A because it says "internet-facing website was compromised." That is specifically what WAF's are designed for. Next-Gen's operate at Layer 7 and provide application-level inspection but are designed for network level protection across services.
upvoted 5 times
...
viktorrdlyi
4 months, 2 weeks ago
Selected Answer: A
NGFW is much more effective then WAF.
upvoted 1 times
...
braveheart22
5 months, 3 weeks ago
Selected Answer: A
NGFW is the correct answer. When it comes to defending against buffer overflow attacks, a Next-Generation Firewall (NGFW) is generally more effective than a Web Application Firewall (WAF). Here's why: NGFW Capabilities: NGFWs provide deep packet inspection, advanced threat detection, and the ability to identify and block malicious traffic based on patterns and behaviors. They can also enforce security policies at the network level, which helps prevent exploitation attempts before they reach the application. WAF Limitations: While WAFs are designed to protect web applications by filtering and monitoring HTTP traffic, they primarily focus on application-layer attacks like SQL injection and cross-site scripting (XSS). Buffer overflow attacks, which often target vulnerabilities in software rather than web applications, may not be as effectively mitigated by a WAF.
upvoted 4 times
...
JoeShmo
5 months, 4 weeks ago
Selected Answer: A
A NGFW would better protect against buffer overflow attacks thanks to deep packet inspection and IDS/IPS. A WAF would protect better against SQL injections and XSS.
upvoted 2 times
...
Markeze
6 months, 4 weeks ago
Selected Answer: A
cuz its a web application fire, and it's main purpose is to protect web applications from external threats
upvoted 1 times
Markeze
6 months, 4 weeks ago
sorry, was meant to select option b
upvoted 2 times
...
...
dbrowndiver
8 months, 2 weeks ago
Selected Answer: B
A WAF inspects incoming and outgoing web traffic to detect and block malicious payloads that may exploit application vulnerabilities, such as buffer overflows.
upvoted 4 times
...
shady23
11 months, 1 week ago
Selected Answer: B
b.WAF Web Application Firewall
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago