Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Ethical Hacker

Domain 1Objective 3

Hacker Classes and Motives CEH Practice Questions (Page 2)

Part of the Information Security and Ethical Hacking Overview domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~16–27 in this domain), expect 2–3 from this objective — we provide 13 practice questions to prepare you well beyond it. (estimate)

13questions here
3free pages
2concepts

Questions 6–10

  1. 6expert · hard

    A security analyst is investigating a breach at a technology company. The attacker stole the source code for a new product and posted it on a public code repository. The attacker also defaced the company's website with a message criticizing the company's labor practices. The attacker did not sell the code or demand a ransom. Which combination of motives best explains the attacker's behavior?

    Select an answer first
  2. 7application · easy

    A security team is profiling an attacker who breached a defense contractor's network. The attacker exfiltrated design documents for a new military drone and transmitted them to a foreign government. The attacker showed no interest in financial data or system damage. Which motive is most likely?

    Select an answer first
  3. 8application · medium

    A security researcher discovers a zero-day vulnerability in a popular web browser. Instead of reporting it to the vendor, the researcher sells the exploit to a government agency known for offensive cyber operations. The researcher believes this is patriotic and does not intend to harm civilians. Which hacker class best describes the researcher's actions?

    Select an answer first
  4. 9application · medium

    A university student discovers a misconfigured database on a public cloud instance that exposes the personal data of thousands of users. Without any authorization, the student downloads a sample of the data, then contacts the company to report the exposure and offers to help fix it for a fee. The student does not sell or leak the data. Which hacker class best describes the student's actions?

    Select an answer first
  5. 10application · easy

    A security engineer is asked to evaluate the security posture of a small business. The business owner is concerned about a recent news story about a hacktivist group defacing websites. The engineer recommends a vulnerability assessment. The business owner asks, 'What is the difference between a vulnerability assessment and a penetration test?' Which response is the most accurate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.