Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilThreat Intelligence Essentials

Domain 3Objective 2

Emerging Threats, Threat Actors, and Attack Vectors TIE Practice Questions (Page 1)

Part of the Cyber Threat Landscape domain, which makes up ~11% of our current practice bank.

39questions here
8free pages
3concepts

Questions 1–5

  1. 1application · medium

    A security analyst is reviewing an incident where an attacker gained access to a company's network by sending a malicious link to an employee via a social media message. The link led to a fake login page that captured the employee's credentials. Which attack vector is being used?

    Select an answer first
  2. 2application · medium

    A company's HR department received an email that appears to be from the CEO, urgently requesting that all employees' W-2 forms be emailed to a specified address. The email address is slightly different from the CEO's real address. Which attack vector is being used?

    Select an answer first
  3. 3application · medium

    A security analyst notices that a user's account is sending a large number of emails with malicious links to internal and external recipients. The user's workstation is also exhibiting unusual behavior. Which attack vector is most likely being used in this scenario?

    Select an answer first
  4. 4expert · hard

    A hospital's network has been infected with a new variant of ransomware that not only encrypts files but also uses living-off-the-land binaries (LOLBins) to spread laterally. The hospital's IT team has isolated the infected systems, but they are unsure if the ransomware has exfiltrated any patient data. The hospital must comply with healthcare data breach notification laws. What is the most appropriate immediate action?

    Select an answer first
  5. 5expert · hard

    A security team is investigating a breach where the attacker used a combination of a watering-hole attack and a zero-day exploit to compromise a user's system. The attacker then used the compromised system to pivot to other systems. The team must determine the most effective way to prevent similar attacks in the future. Which strategy is most effective?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “TIE” is a trademark of its owner, used for identification only.