Cyberlium

Web › Module 8 › Lesson 5

BeginnerModule 8Lesson 5/5

Quiz — Integrity Failures

10 APPLY questions on A08 updates, digests, and deser refuse.

10 min+40 XP10 quiz
Module progress5 of 5

Opening

A08 Software or Data Integrity Failures — Module Quiz

Ten APPLY items on OWASP Top 10:2025 A08 as Cyberlium taught it: unsigned updates and CI trust; digests vs signatures; pins; deserialization as unsafe object reconstruction — refuse/replace on YOUR code with no gadget cookbooks; integrity-lab.txt under $HOME/cyberlium-lab mode 600; sha256sum of local artifacts plus curl -sS -I http://192.168.0.1/. Router admin login at that IP is OUT OF SCOPE. Registry poison, foreign CI attacks, ysoserial labs, hydra, LAN nmap, and malware samples are failing answers. Original Cyberlium — not official OWASP certification. Next: A09 What Must Be Logged.

Knowledge Check

1

APPLY: HTTPS auto-update without signature/digest check. A08?

Multiple choice

Knowledge Check

2

APPLY: True or False: Fork PRs should get production deploy secrets.

True or False

Knowledge Check

3

APPLY: Hash mismatch on a release zip. Action?

Multiple choice

Knowledge Check

4

APPLY: Hash alone proves vendor authorship?

Multiple choice

Knowledge Check

5

APPLY: curl -I of http://192.168.0.1/ shows a TP-Link/Netgear/Huawei “Router Admin” login. What is in scope?

Multiple choice

Knowledge Check

6

APPLY: Teammate wants ysoserial against the dorm API for A08. Response?

Multiple choice

Knowledge Check

7

APPLY: True or False: Signing a pickle makes public pickle.loads a good API.

True or False

Knowledge Check

8

APPLY: integrity-lab.txt blank except “secure.” Pass?

Multiple choice

Knowledge Check

9

APPLY: Path vs OWASP?

Multiple choice

Knowledge Check

10

APPLY: Next module and still refused?

Multiple choice

← Previous

Answer all 10 knowledge checks to continue. (0/10 answered)