
EC-CouncilEthical Hacking Essentials
Domain 3Objective 4
Gaining Access, Maintaining Access, and Covering Tracks EHE Practice Questions (Page 4)
Part of the Ethical Hacking Methodology domain, which makes up ~12% of our current practice bank.
26questions here
6free pages
3concepts
Questions 16–20
- 16
An attacker compromised a Linux server via a vulnerable web application and wants to maintain access without creating new user accounts or modifying system binaries that might trigger integrity checks. Which approach best meets these constraints?
Select an answer first - 17
An advanced persistent threat (APT) group has compromised a Linux server and needs to maintain access for a long-term operation. The group's C2 infrastructure is monitored by the target's security team, and the server has a host-based intrusion detection system (HIDS) that monitors file integrity and process lists. The group wants to avoid detection while ensuring the backdoor survives reboots and is not tied to a single C2 address. Which approach best meets these requirements?
Select an answer first - 18
An attacker has compromised a cloud-based Linux VM and wants to maintain access. The VM's security group only allows inbound SSH from a specific IP range. The attacker wants to ensure access even if the VM is rebooted and the SSH key is rotated. Which method is most resilient?
Select an answer first - 19
Which technique for gaining unauthorized access involves systematically trying many possible passwords against a single user account until the correct one is found?
Select an answer first - 20
A penetration tester is assessing a company's web application and has discovered that the password reset function sends a reset link to the user's email without verifying the user's identity. The tester wants to gain access to a victim's account. Which technique is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.