
EC-CouncilEthical Hacking Essentials
Domain 5Objective 4
Network Attack Detection and Countermeasures EHE Practice Questions (Page 7)
Part of the Network-Level Attacks and Countermeasures domain, which makes up ~12% of our current practice bank.
44questions here
9free pages
4concepts
Questions 31–35
- 31
During incident response, a compromised server is identified as the source of a malware infection that is spreading to other hosts. The team needs to stop the spread while preserving evidence for analysis. Which step should be performed first?
Select an answer first - 32
Which security tool is primarily used to collect and correlate logs from multiple sources to provide a centralized view of security events across an organization?
Select an answer first - 33
A company is implementing a defense-in-depth strategy. They already have a firewall and an IDS. Which additional countermeasure would most effectively enhance their security posture?
Select an answer first - 34
A network administrator must monitor traffic on a high-throughput core link. The monitoring server is dropping packets because the volume exceeds its capture capacity. The administrator needs to identify anomalies without missing critical events. Which approach is most effective?
Select an answer first - 35
A company is planning to segment its network to protect sensitive data. However, the finance department needs to share files with the marketing department, and the marketing department needs internet access. The company also wants to monitor for suspicious activity. Which design best meets these requirements?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.