Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Cybersecurity Technician

Domain 1Objective 1

Information Security Threats and Vulnerabilities CCT Practice Questions (Page 2)

Part of the Information Security Threats and Attacks domain, which makes up ~12% of our current practice bank.

47questions here
10free pages
7concepts

Questions 6–10

  1. 6foundation · easy

    When assessing risk, what does the 'impact' component refer to?

    Select an answer first
  2. 7application · medium

    A security analyst is profiling a threat actor who has been conducting espionage against a defense contractor for several months. The actor uses sophisticated custom malware and carefully targets specific individuals with highly personalized phishing emails. The motivation appears to be gathering classified information. How should the analyst classify this threat actor?

    Select an answer first
  3. 8application · medium

    A company's security team discovers that an attacker gained access to the corporate network by sending a phishing email to an employee, which led to the installation of a remote access Trojan. The RAT then used the employee's VPN credentials to move laterally to a file server. Which of the following best describes the initial attack vector in this scenario?

    Select an answer first
  4. 9foundation · easy

    Which type of malware is specifically designed to encrypt a victim's files and then demand payment for the decryption key?

    Select an answer first
  5. 10foundation · easy

    What is meant by the term 'attack surface'?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CCT” is a trademark of its owner, used for identification only.