Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Ethical Hacker

Domain 1Objective 5

Cyber Kill Chain Methodology CEH Practice Questions (Page 4)

Part of the Information Security and Ethical Hacking Overview domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~16–27 in this domain), expect 2–3 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)

45questions here
9free pages
9concepts

Questions 16–20

  1. 16application · medium

    A penetration tester is preparing a phishing campaign for a client. The tester has identified that the client's employees use a specific PDF viewer that has a known unpatched vulnerability. The tester creates a malicious PDF that exploits this vulnerability and embeds it in an email attachment. Which two phases of the Cyber Kill Chain are directly demonstrated by these actions?

    Select an answer first
  2. 17application · medium

    A company is implementing a data loss prevention (DLP) solution that monitors outbound network traffic for sensitive data patterns and blocks unauthorized transfers. Which phase of the Cyber Kill Chain is this control primarily designed to disrupt?

    Select an answer first
  3. 18expert · hard

    A security team is analyzing a breach. The attacker used publicly available employee information to send a spear-phishing email with a malicious macro document. The document downloaded a backdoor that established a C2 channel using HTTPS. The backdoor then exfiltrated data. The team wants to implement controls that disrupt the attack at the earliest possible phase. Which control should they prioritize?

    Select an answer first
  4. 19foundation · easy

    Which action is most characteristic of the weaponization phase?

    Select an answer first
  5. 20expert · hard

    A security team is evaluating the effectiveness of their defenses. They have implemented email filtering, endpoint protection, and network monitoring. However, they are still experiencing successful attacks that reach the Actions on Objectives phase. Which phase of the Cyber Kill Chain is most likely being under-defended?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.