The author of a software package is concerned about bad actors repackaging and inserting malware into the software. The software download is hosted on a website, and the author exclusively controls the website's contents. Which of the following techniques would best ensure the software's integrity?
Choose an answer
Tap an option to check your answer.
Correct answer: Code signing.
Why this is the answer
Code signing is the best technique to ensure software integrity in this scenario. It uses digital signatures to verify the software's authenticity and that it hasn't been tampered with since it was signed by the author. Users can cryptographically verify that the downloaded software is exactly what the author released. Input validation is a security measure against injection attacks, not for verifying software integrity. Secure cookies protect session data, not software downloads. Fuzzing is a software testing technique to find vulnerabilities, not a method for ensuring integrity post-release.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed