
Certified in Cybersecurity
Domain 4Objective 2
4.2 - Understand Network Threats and Attacks CC Practice Questions (Page 7)
Part of the Network Security domain, which accounts for 24% of the CC exam. ISC2 does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–19 in this domain), expect 4–6 from this objective — we provide 39 practice questions to prepare you well beyond it. (estimate)
39questions here
8free pages
13concepts
24%of the exam
Questions 31–35
- 31
A security researcher is analyzing a hardware security module (HSM) used to store cryptographic keys. The researcher discovers that the HSM's power consumption varies slightly depending on the key being used. By analyzing these variations, the researcher is able to recover the key. Which type of attack is this, and what is the most effective mitigation?
Select an answer first - 32
A user downloads a 'free PDF converter' from a pop-up advertisement. After installation, the user's browser homepage changes and unwanted toolbars appear. The user did not notice any unusual behavior during installation. What type of malware is this most likely to be?
Select an answer first - 33
How does an Intrusion Detection System (IDS) typically respond to detected suspicious activity?
Select an answer first - 34
What is the primary impact of a successful DDoS attack on a network service?
Select an answer first - 35
What is the primary function of antivirus software?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CC” is a trademark of its owner, used for identification only.