
EC-CouncilEthical Hacking Essentials
Domain 3Objective 5
Countermeasures Across Hacking Phases EHE Practice Questions (Page 8)
Part of the Ethical Hacking Methodology domain, which makes up ~12% of our current practice bank.
39questions here
8free pages
6concepts
Questions 36–39
- 36
Why is centralized logging an important countermeasure for the covering tracks phase?
Select an answer first - 37
A security team is reviewing the effectiveness of their endpoint protection. They want to detect a rootkit that hides its processes and files from the operating system. Which approach is most likely to detect such a rootkit?
Select an answer first - 38
A security administrator is reviewing the logging infrastructure after a suspected breach. The attacker appears to have deleted or modified log entries on several servers to cover their tracks. Which countermeasure would be the most effective to prevent this type of log tampering in the future?
Select an answer first - 39
A company's IT team is hardening a new server before deployment. They want to reduce the risk of an attacker gaining access through known vulnerabilities. Which action is most directly aligned with this goal?
Select an answer first
Finished these 4 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to EHE
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.