I would rule out Option D because it deals specifically with session security. In this particular context, I would then say Option D is cropped out of the picture, leaving option A to option C. Why C? Password changes can sometimes lead to weak password practices, hence being the least effective as much as it helps in preventing password compromise, but encryption and suspension of USER ID would be what I consider better controls than (C)
D is the least effective control for protecting passwords specifically, as its primary purpose is to secure active sessions rather than safeguarding the passwords themselves.
The correct answer is B. Encryption of passwords prior to their transmission or storage. This option is the least effective control to protect passwords. While encryption is important for securing passwords, it only protects against unauthorized access to the stored or transmitted password. Other options provide additional layers of protection, such as suspending user IDs after repeated invalid password attempts, forcing password changes, and automatic logoff of inactive users
"D. Automatic logoff" also doesn't protect from stealing passwords, either. Is there any other reasonable explanation to choose C as an answer?
upvoted 1 times
...
...
...
Log in to ExamTopics
Sign in:
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
SiweBalala
1 week, 4 days agoemtofid
1 month agoDomiii
1 year agoCrazyhydra
1 year, 3 months agosed999
3 years, 1 month agoSteve8Taiwan
3 years, 2 months agoWalewweeeed
3 years, 3 months agodedfef
4 years, 1 month agoAKKR
4 years, 1 month agoTico
3 years, 5 months ago