
EC-CouncilEthical Hacking Essentials
Domain 7Objective 3
Mobile Attack Vectors and Vulnerabilities EHE Practice Questions (Page 7)
Part of the Wireless, Mobile, IoT, and OT Attacks domain, which makes up ~15% of our current practice bank.
47questions here
10free pages
8concepts
Questions 31–35
- 31
Which of the following is a common mobile attack vector that involves tricking a user into installing a malicious application from an unofficial source?
Select an answer first - 32
A security team is analyzing a mobile app that was sideloaded by several employees. The app requests permissions to read contacts, send SMS, and access location. After installation, the employees' contacts received phishing messages that appeared to come from the employees' phones. The app also sends the device's location to a remote server. Which classification best describes this app?
Select an answer first - 33
Which physical security threat to mobile devices involves an attacker stealing a device to access the data it contains?
Select an answer first - 34
A company allows employees to use personal smartphones for work email. A device is lost, and the IT team needs to prevent unauthorized access to the corporate email on that device. Which action should be taken first?
Select an answer first - 35
A mobile app developer is writing a note-taking app that stores user notes locally. The developer wants to ensure that if the device is lost, the notes cannot be read. The app currently uses the device's default encryption, but the developer is concerned about the lock screen PIN being weak. Which additional measure would best protect the notes?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.