3801
During an authorized retail-company assessment (RET-LAB-M15-3801), which statement most accurately defines "SQL injection"?
View answer choices
- The confidentiality, integrity, and availability objectives used to reason about information security.
- A staged model describing adversary activity from reconnaissance through actions on objectives.
- A knowledge base that organizes adversary tactics and techniques from observed behavior.
- Injection of database syntax through untrusted input that an application treats as part of a query.