Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Security Specialist

Domain 3Objective 4

Ethical Hacking Phases (reconnaissance to Exploitation) ECSS Practice Questions (Page 5)

Part of the Ethical Hacking Fundamentals and Core Attacks domain, which makes up ~17% of our current practice bank.

47questions here
10free pages
7concepts

Questions 21–25

  1. 21application · medium

    A security consultant is performing reconnaissance on a target organization. The consultant wants to gather information about the organization's network infrastructure without sending any packets to the target's systems. Which technique should the consultant use?

    Select an answer first
  2. 22application · medium

    After completing a port scan, you discover that a Windows server has SMB (port 445) open. You need to extract a list of valid usernames and shared folders from this service to prepare for a password-spraying test. Which phase and technique does this represent?

    Select an answer first
  3. 23foundation · easy

    What is the main objective of vulnerability analysis in ethical hacking?

    Select an answer first
  4. 24foundation · easy

    Which action is characteristic of the exploitation phase?

    Select an answer first
  5. 25application · medium

    A security consultant is performing an initial assessment for a client. The consultant wants to gather information about the client's employees and technology stack without sending any packets to the client's network. Which activity best fits this requirement?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.