
CiscoCertified Network Professional Security
Domain 1Objective 1
1.1 Explain Attack Threats Against On-Premises, Hybrid, and Cloud Environments Such as Viruses, Trojans, DoS/DDoS, Phishing, Rootkits, Man-In-The Middle, Malware, Data Breaches, Insecure APIs, Compromised Credentials, PQC, and AI 350-701 Practice Questions (Page 8)
Part of the Security Concepts domain, which accounts for 20% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
14concepts
20%of the exam
Questions 36–40
- 36
Which type of malware is characterized by self-propagation without user interaction?
Select an answer first - 37
A company exposes a REST API for its mobile app. The API returns full user objects, including password hashes, to the client. An attacker discovers this and extracts the data. Which API vulnerability is being exploited?
Select an answer first - 38
An employee receives an email that appears to be from the company's CEO, urgently requesting a wire transfer to a vendor. The email address is slightly misspelled (e.g., ceo@company.com vs. ceo@cornpany.com). The employee is about to comply. Which type of phishing attack is this?
Select an answer first - 39
What is a common consequence of credential reuse?
Select an answer first - 40
Which phishing variant specifically targets senior executives or high-value individuals?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.