Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilSOC Essentials

Domain 2Objective 1

Threat Intent, Motive, and Goal SCE Practice Questions (Page 8)

Part of the Fundamentals of Cyber Threats domain, which makes up ~12% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~6–10 in this domain), expect 1–2 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)

42questions here
9free pages
4concepts

Questions 36–40

  1. 36expert · hard

    A SOC team is analyzing a series of attacks against a utility company. In the first attack, a DDoS campaign disrupted the company's customer portal for several hours. In the second attack, a phishing email led to the theft of employee credentials, but no data was exfiltrated. The SOC suspects the same threat actor is responsible. Which combination of intent, motive, and goal best explains the attacker's overall strategy?

    Select an answer first
  2. 37application · medium

    A SOC analyst is reviewing an alert about a watering hole attack. The attackers compromised a website that is frequently visited by employees of a specific industry. The website now contains malicious code that exploits a browser vulnerability to install malware on visitors' systems. What is the most likely threat goal?

    Select an answer first
  3. 38application · medium

    A SOC team is analyzing a ransomware incident at a law firm. The attackers encrypted files and left a ransom note demanding payment in cryptocurrency. They also threatened to publish sensitive client documents if the ransom was not paid. Which motive and goal combination best describes this attack?

    Select an answer first
  4. 39expert · hard

    A SOC analyst is reviewing two alerts. Alert 1: A user downloaded a file from a suspicious website, and the file was quarantined by endpoint protection. Alert 2: A user received a phishing email that was blocked by the email gateway. Both alerts involve the same user. The analyst must determine which alert indicates a higher risk of a successful attack. Which analysis is most accurate?

    Select an answer first
  5. 40foundation · easy

    How do threat intent, motive, and goal interrelate in shaping an attack?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “SCE” is a trademark of its owner, used for identification only.