
Certified Tester Security Test Engineer
Domain 5Objective 4
Common Approach of a Hacker CT-STE Practice Questions (Page 1)
Part of the Adjusting To the Organizational Context domain, which makes up ~10% of our current practice bank. ISTQB does not publish an official question count, but from its 75-minute exam (~30–50 total, ~3–5 in this domain), expect 1–1 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
7concepts
Questions 1–5
- 1
Which phase of the attack lifecycle involves removing evidence of the intrusion?
Select an answer first - 2
What is the correct order of the attack lifecycle phases?
Select an answer first - 3
After compromising a Windows server, an attacker clears the event logs and disables the auditing policy. What is the attacker's primary objective?
Select an answer first - 4
A penetration tester is hired to assess the external attack surface of a company. The tester begins by browsing the company's public website, reading job postings, and reviewing social media profiles of employees. The tester does not interact directly with the company's systems. Which phase of the attack lifecycle is the tester performing, and what is the primary goal?
Select an answer first - 5
What is the purpose of establishing persistence on a compromised system?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by ISTQB. “CT-STE” is a trademark of its owner, used for identification only.