ITPEC IP October 2019 Question 40

Source exam: ITPEC IP October 2019Topic: Security

ITPEC IP October 2019 — Question 40 of 100

The three descriptions are cross-site scripting, a bot, and a Trojan horse. Injected browser-executed script is XSS; remotely instructed malware participating in coordinated attacks is a bot; and malicious software disguised as a useful program is a Trojan horse.

Answer (b)

Why not others:
- a targeted attack describes a campaign aimed at a selected organization or person, not the injected-script behavior in (i)

- Trojan horse and bot cannot be exchanged because disguise defines the former while remote command defines the latter

Key rule: Identify threats by behavior: XSS runs injected scripts in browsers, bots obey command-and-control, and Trojans hide malicious functions inside an apparently useful program.

AI-generated — may contain errors

The original exam layout is preserved in the image so diagrams, formulas, tables, and code remain accurate.

This question comes from an official ITPEC past paper. ITPEC Practice is an independent study tool and is not affiliated with ITPEC. See the official IP past-paper collection or Report an issue.