
CertNexusCertified IoT Security Practitioner (CIoTSP)
Domain 3Objective 1
Objective 3.1 Identify Common Threats Used to Exploit Unsecure Network Services. CERTIFIED-IOT-SECURITY-PRACTITIONER Practice Questions (Page 4)
Part of the 3.0 Securing Network Services domain, which accounts for 14% of the CERTIFIED-IOT-SECURITY-PRACTITIONER exam.
29questions here
6free pages
9concepts
14%of the exam
Questions 16–20
- 16
A smart agriculture deployment uses LoRaWAN for sensor communication. An attacker exploits the lack of authentication in the LoRaWAN network server to send forged join requests, causing the server to allocate resources to fake devices and exhaust its capacity. Which type of attack is this?
Select an answer first - 17
A security analyst is monitoring traffic on an IoT network and notices that an attacker is sending crafted packets that appear to come from a trusted sensor, but the payload contains malicious commands that alter the behavior of a controller. Which attack technique is being used?
Select an answer first - 18
Which memory management flaw is exploited by a buffer overflow attack?
Select an answer first - 19
A security engineer is assessing a network that uses TFTP for firmware updates on IoT devices. The engineer notices that an attacker can send a flood of TFTP requests to a device, causing it to become unresponsive. Which characteristic of TFTP makes this attack possible?
Select an answer first - 20
Which common network service is frequently targeted by attackers because it often runs with elevated privileges and historically has had weak authentication and unencrypted data transmission?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by CertNexus. “CERTIFIED-IOT-SECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.