Which AWS service will mitigate this issue?
A development team recently deployed a new version of a web application to production After the release, penetration testing revealed a cross-site scripting vulnerability that could expose user data
Which AWS service will mitigate this issue?
A . AWS Shield Standard
B . AWS WAF
C . Elastic Load Balancing
D . Amazon Cognito
Answer: B
Explanation:
AWS WAF (Web Application Firewall) is designed to protect web applications from common web exploits that could affect application availability, compromise security, or consume excessive resources. AWS WAF can help mitigate cross-site scripting (XSS) vulnerabilities by allowing users to create rules to filter specific types of HTTP requests.
Create a Web ACL:
Go to the AWS WAF & Shield console.
Click "Create web ACL" and specify a name and the AWS resource to protect (e.g., an Application Load Balancer).
Add Rules to Mitigate XSS:
Within the Web ACL, add a new rule.
Select "Rule builder" and choose a rule type. For mitigating XSS, use "AWS Managed Rules" or create a custom rule.
AWS Managed Rules include a predefined set for XSS that you can enable.
Configure the XSS Rule:
If using a custom rule, configure it to inspect requests and block any that contain XSS patterns. Use regular expressions or specific patterns to identify malicious scripts. Deploy the Web ACL:
Once configured, save the Web ACL.
Associate it with your Application Load Balancer or CloudFront distribution to start filtering requests.
Monitor and Adjust:
Monitor the requests being blocked by AWS WAF.
Adjust the rules as necessary to ensure legitimate traffic is not affected and the application remains protected.
Reference: AWS WAF Developer Guide
AWS WAF Managed Rules
Latest SOA-C02 Dumps Valid Version with 54 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund