
EC-CouncilEthical Hacking Essentials
Domain 1Objective 6
Ethical Hacking Scope, Methodologies, and Frameworks EHE Practice Questions (Page 3)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
31questions here
7free pages
3concepts
Questions 11–15
- 11
A penetration tester is engaged to test a client's cloud infrastructure. The client uses a shared responsibility model and requires that the tester not perform any testing that could affect other tenants. The tester must balance the need for thorough testing with the constraint of not impacting shared resources. Which approach best satisfies both requirements?
Select an answer first - 12
A security team is planning to test the security of their organization's web application. They want to use a framework that focuses specifically on web application security and provides a comprehensive testing guide. Which framework should they choose?
Select an answer first - 13
A penetration tester is hired to test a company's internal network. The contract explicitly prohibits social engineering attacks. During the test, the tester finds that the company's employees are susceptible to phishing. What is the most appropriate action?
Select an answer first - 14
Which of the following best defines the scope of an ethical hacking engagement?
Select an answer first - 15
A penetration tester is conducting an external assessment. The client's contract states that the tester must not perform denial-of-service (DoS) tests. During the assessment, the tester accidentally sends a malformed packet that crashes a public-facing server. What should the tester do first?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.