
EC-CouncilCertified Network Defender
Domain 1Objective 1
Network Attacks and Defense Strategies CND Practice Questions (Page 1)
Part of the Network Security Fundamentals and Defense Strategy domain, which makes up ~16% of our current practice bank.
53questions here
11free pages
12concepts
Questions 1–5
- 1
A company's e-commerce site is experiencing intermittent outages. The network defender notices that the outages correlate with a high volume of HTTP GET requests for a specific product page, all from a small set of IP addresses. The requests are legitimate-looking but are sent at a rate that exceeds normal human behavior. Which type of attack is most likely?
Select an answer first - 2
What is the primary purpose of ransomware?
Select an answer first - 3
A network defender is configuring an IDS/IPS to protect a web server. The defender wants to detect SQL injection attempts but also wants to avoid blocking legitimate traffic that contains the word 'select' in a query string. Which configuration approach would best balance detection and false positives?
Select an answer first - 4
A company has suffered a ransomware attack. The incident response team has contained the spread by isolating infected systems. The company has backups, but the last backup was taken 24 hours before the attack. The management wants to restore operations as quickly as possible. What is the most important consideration before restoring from backup?
Select an answer first - 5
Which wireless attack involves an attacker setting up a fake access point that mimics a legitimate one to intercept user traffic?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CND” is a trademark of its owner, used for identification only.