
EC-CouncilComputer Hacking Forensic Investigator
Domain 7Objective 2
IoT Forensics CHFI Practice Questions (Page 2)
Part of the Mobile and IoT Forensics domain, which makes up ~14% of our current practice bank.
56questions here
12free pages
11concepts
Questions 6–10
- 6
A forensic examiner is investigating a smart lock incident and has the homeowner's iPhone with the lock's companion app installed. The app stores data in an encrypted database. Which approach would be most effective to access the app's data?
Select an answer first - 7
An investigator needs to acquire data from a smart lock that is still powered on and connected to the home Wi-Fi. The lock has a small amount of volatile memory that may contain recent access codes. Which acquisition strategy best balances the need to preserve volatile data and maintain chain of custody?
Select an answer first - 8
Which of the following is a potential evidence source in an IoT ecosystem?
Select an answer first - 9
A forensic examiner needs to extract data from a smart home companion app on an Android phone. The app communicates with a cloud backend. Which method would yield the most comprehensive forensic data from the app?
Select an answer first - 10
A forensic investigator is examining a smart camera system where video clips are stored in the vendor's cloud and also cached on the camera's SD card. The vendor's cloud is in a jurisdiction with strict data privacy laws. The investigator needs to preserve evidence without violating privacy regulations. Which action is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CHFI” is a trademark of its owner, used for identification only.