exam questions

Exam CCSP All Questions

View all questions & answers for the CCSP exam

Exam CCSP topic 1 question 462 discussion

Actual exam question from ISC's CCSP
Question #: 462
Topic #: 1
[All CCSP Questions]

Because of multitenancy, specific risks in the public cloud that don't exist in the other cloud service models include all the following except:

  • A. DoS/DDoS
  • B. Information bleed
  • C. Risk of loss/disclosure due to legal seizures
  • D. Escalation of privilege
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
prokopovra
Highly Voted 4 years, 3 months ago
Should be C . DDOS is not limited to the public cloud .
upvoted 13 times
...
xaccan
Highly Voted 3 years, 7 months ago
Multitenant Environments: -Conflict of Interest -Escalation of Privilege -Information Bleed -Legal Activity the answer is Dos/DDOS
upvoted 7 times
...
MaciekMT
Most Recent 1 month, 3 weeks ago
Selected Answer: A
While Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks are a risk in any cloud environment, they are not specific to multitenancy in the public cloud. DoS/DDoS attacks target availability, affecting all cloud models, including public, private, hybrid, and community clouds. Public Cloud Multitenancy Risks: B. Information Bleed → Shared resources (e.g., memory, storage) could accidentally leak data between tenants. C. Risk of Loss/Disclosure Due to Legal Seizures → Data stored in a public cloud may be subject to legal actions against other tenants, resulting in potential data exposure or loss. D. Escalation of Privilege → If an attacker exploits a vulnerability in the cloud provider's infrastructure, they could gain elevated privileges, impacting multiple tenants.
upvoted 1 times
...
Sivath
4 months, 3 weeks ago
Selected Answer: A
A. DoS/DDoS Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks are not specific to multitenancy or public cloud environments. These types of attacks can target any system connected to the internet, regardless of the underlying cloud model or multitenancy structure. They are a common threat across all types of networked environments.
upvoted 1 times
...
a_vi
1 year ago
Denial of Service (DoS) and Distributed Denial of Service (DDoS) attacks are not risks specific to multitenancy in the public cloud. The other options, such as information bleed, risk of loss/disclosure due to legal seizures, and escalation of privilege, are risks associated with multitenancy in the public cloud environment.
upvoted 2 times
...
TraceSplice
1 year ago
Selected Answer: D
D- Escalation of privilege
upvoted 1 times
...
nalaikpanda
1 year, 6 months ago
Answer is C. In normal envrionments a device being captured won't effect other tenents cox there are no tenants. its a risk experienced for all the tenants in cloud
upvoted 1 times
...
Pika26
1 year, 11 months ago
Selected Answer: D
D: Escalation of privilege
upvoted 1 times
...
Alex_2169
2 years, 2 months ago
it says except answer is A all other are multi-tenant "issues"
upvoted 1 times
...
Rollizo
2 years, 5 months ago
Selected Answer: A
Following the official guide, in multi tenant environments there is not DDoS in Multitenant environments. My sense says that DDoS is possible in all the models.
upvoted 1 times
...
serget12
2 years, 5 months ago
Poorly worded question.
upvoted 2 times
...
akg001
2 years, 11 months ago
Selected Answer: C
C. Risk of loss/disclosure due to legal seizures
upvoted 1 times
...
Zeezee2
3 years, 4 months ago
Question asks for this if you translate it well: Which risk is not linked to public cloud due to multitenancy?
upvoted 2 times
...
wizzolo
3 years, 10 months ago
C. the legal seizures can impact other customers in the cloud because of multitenancy, the solution is the encryption to avoid the problem. The DOS/DDOS could impact also in other kind of cloud
upvoted 3 times
...
trying2pass
4 years, 3 months ago
A.DDOS should be correct as DDOS is not a multitenancy related risk
upvoted 3 times
...
Buttersfolife
4 years, 4 months ago
I'm not disagreeing with the answer, but escalation of privilege also exists in traditional environments. Escalation of privileges is a very standard phase of a pen test.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago