Skip to content
SY0-701
Threats, Vulnerabilities, and Mitigations
medium
Question 4 of 22

A web application stores user passwords using a fast hashing algorithm without any additional randomization. An attacker who obtains the hash database could use precomputed tables to crack many passwords at once. Which mitigation would BEST address this weakness?

AUsing a longer password policy
BAdding a unique random value (salt) to each password before hashing
CEncrypting the hash database
DUsing asymmetric encryption for password storage

Educational Content — CertQnA practice questions are written against official exam objectives, covering the same domains tested on the real exam. All content is original and independent — not actual exam questions, not affiliated with any certification vendor. Learn more about our content policy

Discussion

Be the first to share your understanding of this concept

⚠️ Discussion is for concept clarification only. Do not share or request actual exam questions or answers.

Sign in to join the discussion