Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Security Specialist

Domain 4Objective 1

Network-Level Attacks (sniffing, DoS/DDoS, Session Hijacking) ECSS Practice Questions (Page 6)

Part of the Ethical Hacking Advanced Attacks and Penetration Testing domain, which makes up ~17% of our current practice bank.

51questions here
11free pages
12concepts

Questions 26–30

  1. 26application · medium

    A company's web server becomes unresponsive during a flash sale. Network monitoring shows a massive influx of UDP packets to port 53 from many different source IPs, and the server's network interface is saturated. Which type of attack is this?

    Select an answer first
  2. 27application · medium

    An attacker sends a link to a victim that, when clicked, sets the victim's session ID to a value known to the attacker. The victim then logs into a legitimate website, and the attacker uses the known session ID to access the victim's account. Which attack is this?

    Select an answer first
  3. 28foundation · easy

    What is the immediate effect of MAC flooding on a switch?

    Select an answer first
  4. 29foundation · easy

    Which countermeasure is most effective in preventing session hijacking by protecting session tokens during transmission?

    Select an answer first
  5. 30foundation · easy

    Which type of DoS attack is characterized by overwhelming the target with a massive volume of traffic?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.