
EC-CouncilICS/SCADA Cybersecurity
Domain 3Objective 1
Hacking Methodology and the Hacking Process ICSSCADA Practice Questions (Page 4)
Part of the Introduction to Hacking ICS/SCADA domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 49 practice questions to prepare you well beyond it. (estimate)
49questions here
10free pages
6concepts
Questions 16–20
- 16
An attacker has compromised a human-machine interface (HMI) in a pharmaceutical plant. The attacker wants to maintain access even if the HMI is rebooted and the vulnerability is patched. Which technique is most effective for persistence?
Select an answer first - 17
During the scanning and enumeration phase, what is the primary purpose of enumerating ICS/SCADA devices?
Select an answer first - 18
An attacker wants to identify ICS/SCADA devices on a target network. Which action is an example of active reconnaissance?
Select an answer first - 19
A penetration tester is performing a red-team exercise on a mining operation's ICS. The client has set a rule: the tester must not cause any physical impact on the process. The tester has discovered a vulnerability in the HMI that allows remote code execution. Which action is most appropriate under the constraint?
Select an answer first - 20
A penetration tester has found a buffer overflow in a PLC's web server. The PLC is critical to the plant's operation and cannot be rebooted. The tester wants to exploit the vulnerability to gain a shell. What is the primary risk the tester must consider?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.