Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 7Objective 2

OT and SCADA Penetration Testing CPENT Practice Questions (Page 5)

Part of the Specialized Testing and Reporting domain, which makes up ~23% of our current practice bank.

51questions here
11free pages
10concepts

Questions 21–25

  1. 21application · medium

    A penetration tester is planning an active scan of a chemical plant's OT network. The plant uses DNP3 for substation automation and has a strict safety policy that any unexpected traffic could cause a trip. What is the most important mitigation strategy to include in the test plan?

    Select an answer first
  2. 22foundation · easy

    When threat modeling an OT environment, which of the following is a primary concern that differs from traditional IT threat modeling?

    Select an answer first
  3. 23foundation · easy

    Which of the following is a known vulnerability of the DNP3 protocol?

    Select an answer first
  4. 24foundation · easy

    Which of the following is an example of exploiting a protocol weakness in an OT environment?

    Select an answer first
  5. 25foundation · easy

    When performing active scanning in an OT environment, which of the following is a critical consideration to minimize the risk of disruption?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.