AWS Certified Cloud Practitioner CLF-C01 – Question120

A retail company has recently migrated its website to AWS. The company wants to ensure that it is protected from SQL injection attacks. The website uses an Application Load Balancer to distribute traffic to multiple Amazon EC2 instances.
Which AWS service or feature can be used to create a custom rule that blocks SQL injection attacks?

A.
Security groups
B. AWS WAF
C. Network ACLs
D. AWS Shield

Correct Answer: B