Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilEthical Hacking Essentials

Domain 6Objective 1

Web Server Attacks EHE Practice Questions (Page 5)

Part of the Web Application Attacks and Countermeasures domain, which makes up ~9% of our current practice bank.

44questions here
9free pages
4concepts

Questions 21–25

  1. 21application · medium

    A web server's error logs show repeated attempts to access /admin, /backup, and /.git. These paths are not part of the application. Which type of attack is likely being attempted?

    Select an answer first
  2. 22foundation · easy

    Which of the following is a recommended countermeasure to mitigate the risk of unpatched web server software?

    Select an answer first
  3. 23application · medium

    A web server is experiencing intermittent slowdowns. Logs show a high volume of incomplete HTTP requests from many different IP addresses. The requests never complete and the connection remains open. Which type of attack is most likely occurring?

    Select an answer first
  4. 24foundation · easy

    Which component of a web server is most directly responsible for handling HTTP requests and responses?

    Select an answer first
  5. 25expert · hard

    A web server is configured to allow both GET and POST methods. An attacker is using POST requests to send malformed data that causes the server to crash. The application team wants to maintain functionality but prevent the crash. Which countermeasure is most effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.