
Certified Cybersecurity Operations Analyst
Domain 3Objective 1
Attack Vectors CCOA Practice Questions (Page 6)
Part of the Domain 3: Adversarial Tactics, Techniques, and Procedures domain, which accounts for 10% of the CCOA exam. ISACA does not publish an official question count, but from its 240-minute exam (~95–160 total, ~10–16 in this domain), expect 1–2 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
10concepts
10%of the exam
Questions 26–30
- 26
A security guard finds an unattended USB drive in the company parking lot. An employee picks it up, plugs it into their workstation, and opens a file labeled 'Salary_Report.xlsx'. The workstation immediately shows signs of malware infection. Which attack vector was exploited in this scenario?
Select an answer first - 27
A company discovers that a software update pushed by a third-party vendor to all employee workstations contained malware. The vendor's update server had been compromised, and the attacker injected malicious code into the update package. Which type of attack vector does this incident represent?
Select an answer first - 28
A security analyst is investigating a breach where an attacker stole customer data from a web application. The analyst finds that the attacker submitted a crafted request to the application's login form that included a malicious SQL payload. The application returned an error message that revealed the database schema. The attacker then used this information to extract data from the database. Which attack vector was used, and what is the most effective remediation?
Select an answer first - 29
An employee receives an email from an unknown sender with a subject line 'Urgent: Invoice Overdue'. The email contains a link to a document-sharing site. When the employee clicks the link, a file downloads and the employee opens it. Shortly after, the employee's machine begins exhibiting unusual behavior, including high CPU usage and outbound network connections. Which attack vector was most likely used to deliver the malware?
Select an answer first - 30
An attacker sends an email with a PDF attachment that contains a malicious macro. What is the primary delivery method being used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISACA. “CCOA” is a trademark of its owner, used for identification only.