Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilEthical Hacking Essentials

Domain 5Objective 4

Network Attack Detection and Countermeasures EHE Practice Questions (Page 8)

Part of the Network-Level Attacks and Countermeasures domain, which makes up ~12% of our current practice bank.

44questions here
9free pages
4concepts

Questions 36–40

  1. 36foundation · easy

    What is the primary purpose of analyzing network traffic with a network analyzer?

    Select an answer first
  2. 37application · medium

    During an incident, a compromised server is isolated. The incident response team needs to preserve evidence for potential legal action. What is the most important step?

    Select an answer first
  3. 38expert · hard

    During a security incident, a server is sending outbound connections to a known command-and-control (C2) IP address. The server is also used by a critical business application that cannot be taken offline. Which containment strategy best balances security and business continuity?

    Select an answer first
  4. 39application · medium

    A network administrator is troubleshooting a potential denial-of-service attack. The administrator wants to see if the attack is coming from a single source or multiple sources. Which tool would provide the most useful information?

    Select an answer first
  5. 40application · medium

    A security team wants to detect zero-day exploits that do not match any known signature. Which detection technique is best suited for this?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.