
EC-CouncilComputer Hacking Forensic Investigator
Domain 5Objective 1
Investigating Web Attacks CHFI Practice Questions (Page 7)
Part of the Web and Dark Web Forensics domain, which makes up ~13% of our current practice bank.
48questions here
10free pages
8concepts
Questions 31–35
- 31
Which of the following is a common web attack vector that a forensic investigator should be familiar with?
Select an answer first - 32
A security analyst is investigating a web attack. The web server logs show a series of requests with the same source IP but different User-Agent strings, each requesting a unique URL path that doesn't exist. Additionally, the network capture shows that the requests are coming from a botnet. Which conclusion is most supported by the evidence?
Select an answer first - 33
A web application was compromised via a remote code execution (RCE) vulnerability. The investigator has access to the application's source code. Which code pattern would most likely be the root cause of the RCE?
Select an answer first - 34
What is the primary purpose of analyzing web server error logs during an investigation?
Select an answer first - 35
Which HTTP header can provide additional information about the client's origin, but may be unreliable due to spoofing?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CHFI” is a trademark of its owner, used for identification only.