Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam CIPT All Questions

View all questions & answers for the CIPT exam

Exam CIPT topic 1 question 35 discussion

Actual exam question from IAPP's CIPT
Question #: 35
Topic #: 1
[All CIPT Questions]

What has been found to undermine the public key infrastructure system?

  • A. Man-in-the-middle attacks.
  • B. Inability to track abandoned keys.
  • C. Disreputable certificate authorities.
  • D. Browsers missing a copy of the certificate authority's public key.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
Sbowo
Highly Voted 2 years, 11 months ago
I think C is the answer because disreputable CA will make their certificate questionable
upvoted 6 times
...
Ssourav
Most Recent 3 months, 2 weeks ago
Selected Answer: C
The correct answer is C. Disreputable certificate authorities. Disreputable certificate authorities (CAs) can undermine the public key infrastructure (PKI) system. PKI relies on trusted certificate authorities to issue and manage digital certificates that verify the identity of entities (such as websites). If a CA is compromised or behaves unethically, it can issue fraudulent certificates, leading to a breakdown in trust within the PKI system. This can result in security breaches, such as man-in-the-middle attacks, where attackers can impersonate legitimate entities. While the other options describe potential security issues, the integrity and trustworthiness of certificate authorities are fundamental to the overall security of PKI.
upvoted 2 times
...
FayBab1
1 year ago
Agree about C ... D is a local impact
upvoted 2 times
...
pipzz
2 years, 4 months ago
Selected Answer: C
Privacy for Technology book also mentions when DigiNotar, a Dutch CA owned by VASCO Data Security International, apparently issued a certificate for the domain name *.google.com. The problem is that DigiNotar didn’t issue the certificate to Google—it appears that it was issued by the government of Iran, which allegedly used the certificate to spy on Iranian citizens accessing Gmail and Google docs.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...