
EC-CouncilEthical Hacking Essentials
Domain 1Objective 2
Threats, Threat Sources, and Vulnerabilities EHE Practice Questions (Page 6)
Part of the Information Security and Ethical Hacking Foundations domain, which makes up ~16% of our current practice bank.
44questions here
9free pages
6concepts
Questions 26–30
- 26
A hospital's patient records system is accessed by doctors, nurses, and administrative staff. A disgruntled former employee still has valid login credentials and uses them to access patient data after termination. Which threat source and vulnerability category best describe this incident?
Select an answer first - 27
Which of the following is an example of a social engineering threat?
Select an answer first - 28
Which of the following is an example of a configuration vulnerability?
Select an answer first - 29
A company's security team is reviewing a risk assessment. They find that a critical application has a technical vulnerability that is difficult to exploit, but the application is accessible from the internet. They also find a configuration vulnerability that is easy to exploit, but it is on an internal system with low sensitivity. Which vulnerability should be prioritized for remediation?
Select an answer first - 30
A company's office is hit by a flood, damaging servers and causing downtime. Which threat source and threat type best describes this event?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.