Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilICS/SCADA Cybersecurity

Domain 3Objective 4

Identify Vulnerabilities and Exploitation ICSSCADA Practice Questions (Page 6)

Part of the Introduction to Hacking ICS/SCADA domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)

37questions here
8free pages
4concepts

Questions 26–30

  1. 26application · medium

    A manufacturing plant uses a legacy Windows 7-based HMI that is no longer supported by the vendor. The HMI is connected to the OT network and is required for daily operations. The plant has a strict change-management policy that prohibits installing any new software on the HMI without a lengthy approval process. What is the most practical immediate step to reduce the risk from known unpatched vulnerabilities in the HMI?

    Select an answer first
  2. 27application · hard

    A power utility's substation automation system uses DNP3 protocol. A recent security assessment found that the system is vulnerable to replay attacks because it does not use secure authentication. The utility cannot upgrade the RTUs and IEDs in the near term. Which mitigation strategy would be most effective in the short term to reduce the risk of replay attacks?

    Select an answer first
  3. 28application · medium

    A chemical plant's DCS has a known vulnerability in the OPC server that allows an unauthenticated attacker to write arbitrary values to process tags. The plant safety system is independent, but the DCS controls the reactor temperature. What is the most significant potential impact of exploiting this vulnerability?

    Select an answer first
  4. 29foundation · easy

    Which exploitation technique involves inserting malicious code into a field that is later used as a command by the system?

    Select an answer first
  5. 30application · medium

    A water treatment facility uses legacy PLCs that communicate over unauthenticated Modbus TCP on a flat OT network. The engineering team has been asked to reduce the risk of an attacker sending unauthorized write commands to the PLCs, but they cannot replace the PLCs or change the protocol due to operational constraints. Which mitigation should the team implement first?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.