Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilEthical Hacking Essentials

Domain 1Objective 5

Hacking Concepts and Hacker Classes EHE Practice Questions (Page 1)

Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.

37questions here
8free pages
4concepts

Questions 1–5

  1. 1expert · hard

    A security researcher discovers a vulnerability in a popular software product. The researcher is not authorized to test the product, but they found the vulnerability by accident while using the software. The researcher wants to disclose the vulnerability to the vendor. What is the most appropriate action?

    Select an answer first
  2. 2application · medium

    During a routine security review, a company finds that a group of attackers has been defacing the company website with political messages. The attackers used a widely available content management system exploit and did not attempt to steal data. Which classification best fits this group?

    Select an answer first
  3. 3expert · hard

    A security researcher discovers a zero-day vulnerability in a widely used web server. The researcher is not affiliated with the vendor and has no authorization to test the affected systems. The researcher wants to improve security but also wants to avoid legal repercussions. Which action best balances ethical responsibility and legal risk?

    Select an answer first
  4. 4application · medium

    A company hires an ethical hacker to test its internal network. The contract includes a clause that any discovered vulnerabilities must be reported only to the company's security team and not disclosed publicly. During testing, the hacker finds a critical vulnerability in a third-party component. The hacker reports it to the company, but the company decides not to fix it immediately. The hacker then publishes the vulnerability details on a public forum to pressure the company. Which ethical principle did the hacker violate?

    Select an answer first
  5. 5expert · hard

    A security researcher finds a vulnerability in a popular open-source project. The researcher is not affiliated with the project. The researcher also discovers that the vulnerability is being actively exploited in the wild. The researcher wants to disclose the vulnerability responsibly. What is the best course of action?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.