
EC-CouncilCertified Security Specialist
Domain 4Objective 1
Network-Level Attacks (sniffing, DoS/DDoS, Session Hijacking) ECSS Practice Questions (Page 7)
Part of the Ethical Hacking Advanced Attacks and Penetration Testing domain, which makes up ~17% of our current practice bank.
51questions here
11free pages
12concepts
Questions 31–35
- 31
What is 'blind hijacking' in the context of TCP/IP session hijacking?
Select an answer first - 32
A penetration tester is on a switched network and wants to sniff traffic between a target host and the default gateway. The tester wants to avoid detection and minimize disruption. Which technique should the tester use?
Select an answer first - 33
What is the role of a botnet in a DDoS attack?
Select an answer first - 34
A security team is analyzing a DDoS attack against their web application. The attack traffic consists of large UDP packets sent to random ports on the server, and the source IPs are spoofed. The team wants to mitigate the attack while minimizing impact on legitimate users. Which mitigation is most effective?
Select an answer first - 35
A network administrator is troubleshooting a performance issue on a switched network. The administrator suspects that an attacker is using a sniffing tool to capture traffic. The administrator notices that the switch's CAM table is full and the switch is flooding unicast frames to all ports. Which sniffing technique is likely being used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECSS” is a trademark of its owner, used for identification only.