Cyberlium

Web › Module 9 › Lesson 5

BeginnerModule 9Lesson 5/5

Quiz — Logging and Alerting

10 APPLY questions on A09 must-log, alerts, and privacy.

10 min+40 XP10 quiz
Module progress5 of 5

Opening

A09 Security Logging and Alerting Failures — Module Quiz

Ten APPLY items on OWASP Top 10:2025 A09 as Cyberlium taught it: must-log security events; structured fields without secrets; alerts with owners/runbooks; fatigue policy; privacy never-log/redaction; logging-lab.txt under $HOME/cyberlium-lab mode 600; optional curl of http://192.168.0.1/ to generate a request you log locally. Router admin login at that IP is OUT OF SCOPE. Foreign SIEM scrapes, real PII gists, password logging, hydra, LAN nmap, and wiping others’ audit trails are failing answers. Original Cyberlium — not official OWASP certification. Next: A10 Fail-Open vs Fail-Closed.

Knowledge Check

1

APPLY: No failed-login or admin-change logs. A09?

Multiple choice

Knowledge Check

2

APPLY: True or False: Logging plaintext passwords helps MFA debugging in production.

True or False

Knowledge Check

3

APPLY: Logs exist; admin grants never page anyone. Gap?

Multiple choice

Knowledge Check

4

APPLY: Permanent disable of all alerts to reduce noise?

Multiple choice

Knowledge Check

5

APPLY: curl of http://192.168.0.1/ shows a TP-Link/Netgear/Huawei “Router Admin” login. What is in scope?

Multiple choice

Knowledge Check

6

APPLY: Framework logs Authorization headers. Action?

Multiple choice

Knowledge Check

7

APPLY: True or False: Fake sample lines are required instead of real customer data in the lab file.

True or False

Knowledge Check

8

APPLY: logging-lab.txt blank “we monitor.” Pass?

Multiple choice

Knowledge Check

9

APPLY: Path vs OWASP?

Multiple choice

Knowledge Check

10

APPLY: Next and still refused?

Multiple choice

← Previous

Answer all 10 knowledge checks to continue. (0/10 answered)