
Palo Alto NetworksCertified Cybersecurity Practitioner
Domain 1Objective 2
1.2 Categorize Techniques Used by Malicious Actors as Defined by the MITRE ATT&CK Framework CYBERSECURITY-PRACTITIONER Practice Questions (Page 6)
Part of the Cybersecurity domain, which accounts for 19% of the CYBERSECURITY-PRACTITIONER exam.
37questions here
8free pages
13concepts
19%of the exam
Questions 26–30
- 26
A security analyst is investigating a compromised email account. The attacker is observed reading emails and forwarding them to an external address. Which MITRE ATT&CK technique is the attacker using to collect data?
Select an answer first - 27
An attacker uses PowerShell to run a script that downloads and executes a payload. Which MITRE ATT&CK tactic does this action primarily represent?
Select an answer first - 28
A penetration tester is on a compromised host with standard user privileges. They use a known vulnerability in the Windows kernel to gain SYSTEM-level access. Which MITRE ATT&CK technique best describes this action?
Select an answer first - 29
Which of the following is an example of an Exfiltration technique?
Select an answer first - 30
A malware analyst is examining a sample that uses a technique to hide its true file extension by using a right-to-left override (RLO) character. The file appears as 'invoice.pdf' but is actually 'invoice.exe'. Which MITRE ATT&CK technique is the malware using?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by Palo Alto Networks. “CYBERSECURITY-PRACTITIONER” is a trademark of its owner, used for identification only.