Modules / Domain 8 — Software Development SecurityPractice Quiz: Software Development SecurityQuestion 1 of 4What is the single most effective defense against SQL injection?Client-side input validationParameterized queries with server-side validationHiding error messagesRenaming database tablesQuestion 2 of 4Deducing classified information from a set of unclassified facts you are allowed to see is called:AggregationInferencePolyinstantiationNormalizationQuestion 3 of 4Which malware type propagates across a network without any user action?VirusWormTrojan horseLogic bombQuestion 4 of 4In which SDLC phase is threat modelling with STRIDE most appropriately performed?DesignDeploymentMaintenanceDisposalAsk about this pagePreviousNext