Which security principle is violated?

A hacker gains access to a web server and reads the credit card numbers stored on that server.

Which security principle is violated?
A . Availability
B . Confidentiality
C . Integrity
D . Authenticity

Answer: B

Explanation:

Confidentiality is one of the security principles that states that only authorized parties should have access to information assets. Confidentiality protects the secrecy and privacy of information from unauthorized disclosure or exposure. A hacker gaining access to a web server and reading the credit card numbers stored on that server violates the confidentiality principle, as he or she is not an authorized party and has access to sensitive information that belongs to others. Therefore, the correct answer is B.

Reference: ISO/IEC 27000:2022, clause 3.8; Defining Security Principles – Pearson IT Certification.

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments