Question: 119
In the context of protecting sensitive payment card informat...
A financial services company is developing a new web application to handle sensitive customer information, including credit card details. The development team decides to use the Advanced Encryption Standard (AES) for encrypting data before storing it in the database. However, they configure AES in Electronic Codebook (ECB) mode without implementing any additional security measures. After deployment, a security audit reveals that an attacker could potentially identify patterns in the encrypted data.
Which of the following best explains the primary vulnerability associated with using AES in ECB mode in this scenario?
Share your thoughts, provide feedback, or discuss the question and answer below. You can also help others by answering their questions or providing additional information. Thank you for contributing! π
No comments yet. Be the first to comment!