
EC-CouncilEthical Hacking Essentials
Domain 5Objective 4
Network Attack Detection and Countermeasures EHE Practice Questions (Page 8)
Part of the Network-Level Attacks and Countermeasures domain, which makes up ~12% of our current practice bank.
44questions here
9free pages
4concepts
Questions 36–40
- 36
What is the primary purpose of analyzing network traffic with a network analyzer?
Select an answer first - 37
During an incident, a compromised server is isolated. The incident response team needs to preserve evidence for potential legal action. What is the most important step?
Select an answer first - 38
During a security incident, a server is sending outbound connections to a known command-and-control (C2) IP address. The server is also used by a critical business application that cannot be taken offline. Which containment strategy best balances security and business continuity?
Select an answer first - 39
A network administrator is troubleshooting a potential denial-of-service attack. The administrator wants to see if the attack is coming from a single source or multiple sources. Which tool would provide the most useful information?
Select an answer first - 40
A security team wants to detect zero-day exploits that do not match any known signature. Which detection technique is best suited for this?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.