
EC-CouncilEthical Hacking Essentials
Domain 7Objective 5
IoT and OT Attacks and Countermeasures EHE Practice Questions (Page 3)
Part of the Wireless, Mobile, IoT, and OT Attacks domain, which makes up ~15% of our current practice bank.
54questions here
11free pages
8concepts
Questions 11–15
- 11
A security analyst notices that a large number of internet-connected IP cameras are sending repeated login attempts to a central server. The cameras use default credentials and have outdated firmware. The analyst suspects the cameras have been compromised and are part of a botnet. Which immediate action would most effectively reduce the botnet's ability to grow and cause further harm?
Select an answer first - 12
A manufacturing company has a highly automated production line that relies on a mix of modern and legacy OT devices. The legacy devices use insecure protocols and are not patchable. The company has a strict safety requirement that any security control must not introduce latency or risk of failure. Which security control is most appropriate?
Select an answer first - 13
A transportation authority operates a rail system with OT systems controlling signals and switches. The OT network is connected to the corporate network for maintenance access. The authority wants to improve security without affecting the availability of the rail system. Which approach is most appropriate?
Select an answer first - 14
A retail company deploys IoT cameras for security. The cameras are accessible from the internet for remote viewing. The security team wants to ensure that the cameras cannot be used as a foothold to access the internal network. Which control is most effective?
Select an answer first - 15
Which common IoT vulnerability is most likely to be exploited when a device sends sensor data to a server without encryption?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.