Which of these is a way of making applications less vulnerable to
hacking?

O make Deny the default
O apply the principle of greatest privilege
O have a single point of defense
O make Allow the default