
EC-CouncilEthical Hacking Essentials
Domain 1Objective 2
Threats, Threat Sources, and Vulnerabilities EHE Practice Questions (Page 4)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
44questions here
9free pages
6concepts
Questions 16–20
- 16
A company has a public-facing web server with an unpatched vulnerability. An attacker exploits it to deface the website. What is the threat, and what is the vulnerability?
Select an answer first - 17
A company's employees frequently fall for phishing emails because they are not trained to recognize them. Which vulnerability category does this represent, and what type of threat exploits it?
Select an answer first - 18
Which of the following is a non-human threat source?
Select an answer first - 19
A security analyst is explaining to a non-technical manager why a vulnerability in a legacy system is still a risk even though the system is not connected to the internet. Which explanation is most accurate?
Select an answer first - 20
A company's network is infected with ransomware after an employee clicked a malicious link. Which threat source and vulnerability category are involved?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.