
EC-CouncilCertified Ethical Hacker
Domain 1Objective 2
Classification and Types of Attacks CEH Practice Questions (Page 10)
Part of the Information Security and Ethical Hacking Overview domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~16–27 in this domain), expect 2–3 from this objective — we provide 52 practice questions to prepare you well beyond it. (estimate)
52questions here
11free pages
12concepts
Questions 46–50
- 46
A security guard notices an individual without a badge following an employee through a door that requires an access card. The individual gains entry to a restricted area. Which type of physical attack is this?
Select an answer first - 47
Which of the following is a common way to categorize information security attacks?
Select an answer first - 48
A web developer notices that when a user submits a search query, the query is reflected in the page URL and also displayed on the resulting page without proper encoding. An attacker crafts a link that, when clicked, executes JavaScript in the victim's browser. Which type of attack is this?
Select an answer first - 49
An attacker sends an email to employees that appears to be from the company's IT department, stating that their email quota is exceeded and they must click a link to re-authenticate. The link leads to a fake login page that captures credentials. Which type of attack is this?
Select an answer first - 50
Which social engineering attack involves an attacker physically following an authorized person into a restricted area?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.