Which action reduces the attack surface of system components?

Prepare for the PCI DSS Requirements Test with our interactive quizzes. Use multiple choice questions, flashcards, and detailed explanations. Ace your exam with confidence!

Multiple Choice

Which action reduces the attack surface of system components?

Explanation:
Reducing attack surface means limiting the ways someone could break into a system by removing components that aren’t needed. When you eliminate unnecessary functionality, such as unused scripts and extra web servers, you shrink the number of entry points and the amount of code that could contain vulnerabilities. This makes it harder for an attacker to find a path in. The other options would expand or preserve exposure. Enabling every feature broadens the attack surface because more capabilities mean more potential bugs, misconfigurations, and exploitable paths. Keeping default subsystems often leaves components active that aren’t required, which adds unnecessary risks. Installing extra drivers introduces additional code that runs with high privileges and can have vulnerabilities, increasing the avenues an attacker could exploit.

Reducing attack surface means limiting the ways someone could break into a system by removing components that aren’t needed. When you eliminate unnecessary functionality, such as unused scripts and extra web servers, you shrink the number of entry points and the amount of code that could contain vulnerabilities. This makes it harder for an attacker to find a path in.

The other options would expand or preserve exposure. Enabling every feature broadens the attack surface because more capabilities mean more potential bugs, misconfigurations, and exploitable paths. Keeping default subsystems often leaves components active that aren’t required, which adds unnecessary risks. Installing extra drivers introduces additional code that runs with high privileges and can have vulnerabilities, increasing the avenues an attacker could exploit.

Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy