
EC-CouncilCertified Penetration Testing Professional
Domain 7Objective 2
OT and SCADA Penetration Testing CPENT Practice Questions (Page 5)
Part of the Specialized Testing and Reporting domain, which makes up ~23% of our current practice bank.
51questions here
11free pages
10concepts
Questions 21–25
- 21
A penetration tester is planning an active scan of a chemical plant's OT network. The plant uses DNP3 for substation automation and has a strict safety policy that any unexpected traffic could cause a trip. What is the most important mitigation strategy to include in the test plan?
Select an answer first - 22
When threat modeling an OT environment, which of the following is a primary concern that differs from traditional IT threat modeling?
Select an answer first - 23
Which of the following is a known vulnerability of the DNP3 protocol?
Select an answer first - 24
Which of the following is an example of exploiting a protocol weakness in an OT environment?
Select an answer first - 25
When performing active scanning in an OT environment, which of the following is a critical consideration to minimize the risk of disruption?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.