
EC-CouncilBlockchain Business Leader Certification
Domain 2Objective 5
Incident Response and Risk Mitigation BBLC Practice Questions (Page 7)
Part of the Cryptography and Security in Blockchain domain, which makes up ~13% of our current practice bank.
54questions here
11free pages
8concepts
Questions 31–35
- 31
A blockchain-based identity management system has been compromised. The attacker gained access to a node that stores encrypted identity data and is threatening to release the decryption keys. The system uses a multi-party computation (MPC) scheme where the decryption key is split among five nodes, and any three can reconstruct it. The attacker compromised one node. What is the best containment and recovery strategy?
Select an answer first - 32
A decentralized finance (DeFi) protocol is conducting a risk assessment to prioritize its security investments. The protocol holds $50 million in a smart contract that has never been audited, $5 million in a multi-signature treasury wallet, and $1 million in a governance token contract that was audited last year. The team has limited budget for mitigation. Which asset should be prioritized for a code audit?
Select an answer first - 33
After a ransomware attack encrypted the servers hosting a company's blockchain nodes, the company restored the nodes from backups. However, the restored nodes are missing the last 10 blocks of transactions. What is the BEST way to restore data integrity and ensure business continuity?
Select an answer first - 34
A consortium blockchain for healthcare records is conducting a risk assessment. The network stores patient data, and a vulnerability in the smart contract that manages access control has been identified. The team has limited budget and must choose one mitigation. Which mitigation provides the most immediate reduction of the identified risk?
Select an answer first - 35
A blockchain-based payment network suffered a 51% attack where an attacker reorganized the chain and double-spent $10M. The network has a checkpointing mechanism that allows validators to agree on a canonical chain. The team must recover the network while minimizing financial loss and maintaining user trust. What is the most appropriate recovery approach?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “BBLC” is a trademark of its owner, used for identification only.