
EC-CouncilCertified Ethical Hacker
Domain 8Objective 3
Cloud Hacking Methodology CEH Practice Questions (Page 5)
Part of the Cloud Computing domain, which makes up ~7% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~7–11 in this domain), expect 2–3 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)
48questions here
10free pages
10concepts
Questions 21–25
- 21
After compromising an AWS account, an attacker wants to establish persistence that is difficult to detect and will survive a password reset on the root user. Which of the following is the MOST effective persistence mechanism?
Select an answer first - 22
An attacker has compromised a low-privileged IAM user in AWS. The user has permissions to list S3 buckets and read objects in a specific bucket. The attacker discovers that the bucket contains database credentials. The attacker wants to move laterally to an RDS database. Which sequence of actions is most effective?
Select an answer first - 23
Which cloud credential attack involves tricking users into revealing their login credentials through fake cloud login pages?
Select an answer first - 24
A penetration tester has gained access to an AWS EC2 instance with an IAM role attached. The role has permissions to list S3 buckets and read objects in a specific bucket. The tester wants to escalate privileges to gain administrative access. Which technique is most appropriate?
Select an answer first - 25
What is the primary purpose of querying the cloud instance metadata service during reconnaissance?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.