
EC-CouncilComputer Hacking Forensic Investigator
Domain 6Objective 1
Cloud Forensics CHFI Practice Questions (Page 10)
Part of the Cloud and Communication Forensics domain, which makes up ~14% of our current practice bank.
53questions here
11free pages
9concepts
Questions 46–50
- 46
An investigator needs to collect evidence from a cloud VM that has been compromised. The VM is running Linux. Which tool is best suited for acquiring volatile memory from the VM?
Select an answer first - 47
A forensic investigator is working on a case involving a cloud-based file storage service. The investigator needs to preserve evidence in a forensically sound manner. Which tool is most appropriate for this task?
Select an answer first - 48
How does data duplication in cloud environments complicate forensic investigations?
Select an answer first - 49
In a SaaS environment, an investigator needs to obtain user activity logs for a specific account. The provider offers an API for log export. What is the best approach?
Select an answer first - 50
Why is preservation a critical step in the cloud forensic process?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CHFI” is a trademark of its owner, used for identification only.