Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
ISC2 logo

Certified Information Systems Security Professional

Domain 3Objective 7

3.7 - Understand Methods of Cryptanalytic Attacks CISSP Practice Questions (Page 7)

Part of the Security Architecture and Engineering domain, which accounts for 13% of the CISSP exam. ISC2 does not publish an official question count, but from its 180-minute exam (~70–120 total, ~9–16 in this domain), expect 1–2 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)

42questions here
9free pages
13concepts
13%of the exam

Questions 31–35

  1. 31foundation · easy

    What is the primary characteristic of a brute force attack against a cryptographic key?

    Select an answer first
  2. 32foundation · easy

    In a ciphertext-only attack, what information does the attacker have access to?

    Select an answer first
  3. 33foundation · easy

    Why is a brute force attack considered computationally infeasible against a strong cryptographic key?

    Select an answer first
  4. 34expert · hard

    A security team is testing a legacy encryption service that decrypts data submitted via an API. The team has the ability to submit arbitrary ciphertexts and receive the corresponding plaintext. They suspect the service uses a weak block cipher mode. Which attack would be most effective to exploit this capability?

    Select an answer first
  5. 35expert · hard

    A security researcher is analyzing a smart card used for authentication. The researcher has the card and a card reader, and can control the power supply to the card. The goal is to extract the secret key stored on the card. Which attack is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISC2. “CISSP” is a trademark of its owner, used for identification only.