
Certified Cybersecurity Operations Analyst
Domain 3Objective 1
Attack Vectors CCOA Practice Questions (Page 5)
Part of the Domain 3: Adversarial Tactics, Techniques, and Procedures domain, which accounts for 10% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
10concepts
10%of the exam
Questions 21–25
- 21
A company with a strict 'clean desk' policy discovers that a contractor with badge access to the building has been leaving USB drives plugged into unattended workstations in the finance department. The contractor claims they were just charging their phone. A security review finds that the USB drives contain a keystroke logger. Which combination of attack vectors is most likely being used, and what is the most effective control to prevent this?
Select an answer first - 22
Which social engineering technique involves an attacker impersonating a trusted individual or authority figure to manipulate a victim into revealing sensitive information?
Select an answer first - 23
A security analyst notices a large number of failed login attempts against the company's VPN gateway from a single IP address. The attempts are using common passwords against multiple usernames. The analyst also observes that some attempts are using usernames that match employees in the finance department. Which attack technique is the attacker most likely using?
Select an answer first - 24
What is the primary characteristic of a brute force attack?
Select an answer first - 25
A company's security team is investigating a breach where an attacker gained access to a user's account. The user reports that they received an email with a link to a website that looked identical to the company's internal portal. The user entered their credentials, and the attacker then used those credentials to access the real portal. The company uses multi-factor authentication (MFA), but the attacker was still able to bypass it. Which attack vector was most likely used, and what is the most effective mitigation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.