
EC-CouncilEthical Hacking Essentials
Domain 8Objective 2
Cloud Computing Threats and Attacks EHE Practice Questions (Page 7)
Part of the Cloud Computing and Penetration Testing domain, which makes up ~12% of our current practice bank.
39questions here
8free pages
4concepts
Questions 31–35
- 31
A company wants to mitigate the risk of data breaches in its cloud environment. Which strategy is most effective?
Select an answer first - 32
A company discovers that a cloud storage bucket was left publicly readable for several months. During that time, an attacker downloaded customer data. The company also finds that the bucket's access logs were disabled. Which combination of threats and mitigation failures does this scenario illustrate?
Select an answer first - 33
A company's cloud environment was compromised through an insecure API. The investigation shows that the API had no rate limiting and used weak authentication. Which of the following are effective measures to prevent similar API attacks? Select all that apply.
Select an answer first - 34
Which of the following is a common cloud computing threat that occurs when an attacker gains unauthorized access to a user's credentials and uses them to access cloud resources?
Select an answer first - 35
A cloud provider experiences a hypervisor vulnerability that could allow tenants to access each other's data. The provider patches the vulnerability, but a tenant is concerned about the risk of future vulnerabilities. Which mitigation strategy is most appropriate for the tenant to reduce their risk?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.