
EC-CouncilCertified Ethical Hacker
Domain 4Objective 3
Denial-of-Service and DDoS CEH Practice Questions (Page 4)
Part of the Network and Perimeter Hacking domain, which makes up ~9% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~9–14 in this domain), expect 2–3 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
6concepts
Questions 16–20
- 16
What is the primary difference between a denial-of-service (DoS) attack and a distributed denial-of-service (DDoS) attack?
Select an answer first - 17
A company's online banking portal is experiencing intermittent slowdowns. The security team finds that the attack traffic consists of many TCP connections that are established but then send no data, tying up server resources. The connections come from a large botnet. Which type of attack is this, and what is the best mitigation?
Select an answer first - 18
A DDoS attack is using spoofed source IPs to send small queries to many public DNS servers, which then send large responses to the victim. This is an example of which type of attack?
Select an answer first - 19
In a DNS amplification attack, how does the attacker achieve a large volume of traffic directed at the victim?
Select an answer first - 20
A web application is experiencing intermittent slowdowns. The server logs show many incomplete HTTP connections where the client sends the initial request but never completes the handshake or sends the full request. The connections are from various IPs. Which type of attack is this, and what mitigation is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.