
CiscoCertified Network Professional Security
Domain 6Objective 5
6.5 Explain Exfiltration Techniques Such as DNS Tunneling, HTTPS, Email, FTP/SSH/SCP/SFTP, ICMP, Messenger, IRC, NTP, and Cloud Storage 350-701 Practice Questions (Page 1)
Part of the Network Access, Visibility, and Enforcement domain, which accounts for 15% of the 350-701 exam. Cisco does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 1–2 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
9concepts
15%of the exam
Questions 1–5
- 1
What makes DNS tunneling an attractive exfiltration method for attackers?
Select an answer first - 2
Which of the following protocols is commonly used for file transfer and can be abused to exfiltrate data?
Select an answer first - 3
A company's security team is investigating a potential data breach. They notice that a user's workstation has been making continuous HTTPS connections to a personal cloud storage service's API endpoint, and the traffic volume is unusually high during off-hours. The user has no business need for this service. The security team suspects data is being uploaded. Which detection method would be MOST effective in confirming this exfiltration?
Select an answer first - 4
How does HTTPS exfiltration hide data from network security monitoring?
Select an answer first - 5
What makes cloud storage exfiltration difficult to detect?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Cisco. “350-701” is a trademark of its owner, used for identification only.