
EC-CouncilEthical Hacking Essentials
Domain 8Objective 2
Cloud Computing Threats and Attacks EHE Practice Questions (Page 6)
Part of the Cloud Computing and Penetration Testing domain, which makes up ~12% of our current practice bank.
39questions here
8free pages
4concepts
Questions 26–30
- 26
A company uses a cloud storage service to share files with external partners. They want to ensure that only authorized partners can access specific folders. Which access control strategy is most appropriate?
Select an answer first - 27
A company uses a cloud-based CRM that was recently compromised. The investigation shows that an attacker used a valid employee's credentials to access customer data. The employee had not used multi-factor authentication (MFA). Which mitigation would be most effective in preventing this type of account hijacking?
Select an answer first - 28
A small business is considering moving its email system to a cloud provider. The owner is concerned about losing control over the data and being locked into a single vendor. Which strategy best mitigates these concerns?
Select an answer first - 29
A company's cloud environment uses a shared infrastructure model where multiple customers run workloads on the same physical servers. A vulnerability in the hypervisor could allow one customer to access another customer's data. Which cloud attack vector is this?
Select an answer first - 30
A company uses a public cloud service where multiple customers share the same physical servers. The company is concerned that a malicious tenant could exploit a vulnerability to access their data. Which cloud security risk is this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.