
EC-CouncilICS/SCADA Cybersecurity
Domain 3Objective 3
Scanning and Enumeration ICSSCADA Practice Questions (Page 4)
Part of the Introduction to Hacking ICS/SCADA domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 1–2 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)
46questions here
10free pages
6concepts
Questions 16–20
- 16
A water utility's SCADA network uses both Modbus TCP and DNP3. You have discovered a device on TCP port 502 that responds to Modbus function code 3, but the asset inventory lists it as a DNP3 device. What is the most likely explanation?
Select an answer first - 17
A consultant has completed a scan of a water utility's SCADA network and found several Modbus devices with unknown function codes. The consultant needs to document the findings for a report. What is the most important information to include for each device?
Select an answer first - 18
What is the primary purpose of banner grabbing in an ICS/SCADA environment?
Select an answer first - 19
A vulnerability assessment is planned for a power utility's SCADA network. The network contains legacy Windows 2000 workstations and modern RTUs. The assessment must identify known vulnerabilities without causing outages. Which approach is most appropriate?
Select an answer first - 20
Why is it important to document scan findings in an ICS/SCADA security assessment?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ICSSCADA” is a trademark of its owner, used for identification only.