
EC-CouncilCertified Penetration Testing Professional
Domain 7Objective 3
Cloud Penetration Testing CPENT Practice Questions (Page 1)
Part of the Specialized Testing and Reporting domain, which makes up ~23% of our current practice bank.
51questions here
11free pages
12concepts
Questions 1–5
- 1
You are testing a Google Cloud Storage bucket that is supposed to be private. You find that the bucket has a uniform bucket-level access policy enabled, and the IAM policy grants 'roles/storage.objectViewer' to 'allUsers'. What is the most effective way to demonstrate the risk to the client?
Select an answer first - 2
Which cloud compute resource is a virtual machine instance that can be exposed to the internet via a public IP address?
Select an answer first - 3
Which API security weakness occurs when an API returns more data in its response than the client needs?
Select an answer first - 4
You are leading a cloud penetration test for a client that uses a serverless architecture on AWS. The client wants to test the security of their Lambda functions, but they are concerned about the cost of running the functions during the test. What is the most cost-effective approach that still provides thorough testing?
Select an answer first - 5
Which attack surface is most directly associated with the threat of insecure APIs in a cloud environment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.