
Certified in Cybersecurity
Domain 4Objective 2
4.2 - Understand Network Threats and Attacks CC Practice Questions (Page 6)
Part of the Network Security domain, which accounts for 24% of the CC exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 4–6 from this objective — we provide 39 practice questions to prepare you well beyond it. (estimate)
39questions here
8free pages
13concepts
24%of the exam
Questions 26–30
- 26
Which of the following is a common output of a vulnerability scan?
Select an answer first - 27
An employee at a law firm opens an email attachment named 'Invoice_Q3.docm' from an unknown sender. After opening it, the employee notices that several files on their local drive have been renamed with a '.encrypted' extension. The firm's antivirus software is up to date and running. What is the most likely reason the antivirus did not prevent this outcome?
Select an answer first - 28
What is a man-in-the-middle (MITM) attack?
Select an answer first - 29
What is the primary role of an Intrusion Detection System (IDS)?
Select an answer first - 30
A security researcher is analyzing a smartcard used for building access. The researcher notices that the card's cryptographic operations take slightly longer when processing certain inputs. By measuring these timing variations, the researcher is able to extract the card's secret key. This is an example of which type of attack?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CC” is a trademark of its owner, used for identification only.