Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilEthical Hacking Essentials

Domain 3Objective 1

Reconnaissance, Footprinting, and OSINT Techniques EHE Practice Questions (Page 9)

Part of the Ethical Hacking Methodology domain, which makes up ~12% of our current practice bank.

42questions here
9free pages
8concepts

Questions 41–42

  1. 41application · medium

    A security researcher is conducting passive reconnaissance on a target organization. The researcher has gathered employee names from LinkedIn and the company's technology stack from job postings. The researcher now wants to identify the organization's physical security posture, such as the layout of their office and any security cameras visible from the street. Which OSINT source would be most appropriate?

    Select an answer first
  2. 42expert · hard

    A penetration tester is conducting a red team exercise against a client. The client has strict rules of engagement that prohibit any active scanning or direct interaction with the target's systems during the initial phase. The tester has gathered OSINT data including employee names, email addresses, and the technology stack from job postings and social media. The tester also found a public GitHub repository that appears to belong to the client and contains code snippets referencing internal API endpoints. Which action best applies the OSINT findings to identify potential attack vectors while staying within the rules of engagement?

    Select an answer first
Finished these 2 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to EHE

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.