CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 1–50 of 5,000 matching questions

50 per page
0001
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During an authorized retail-company assessment (RET-LAB-M01-001), which statement most accurately defines "CIA triad"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. A staged model describing adversary activity from reconnaissance through actions on objectives.
  4. The total set of reachable interfaces, services, identities, and paths an attacker could target.
Practice
0002
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-002), which statement most accurately defines "CIA triad"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
0003
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-003), which statement most accurately defines "CIA triad"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0004
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a financial-services purple-team test (FIN-PT-M01-004), which statement most accurately defines "CIA triad"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0005
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-005), which statement most accurately defines "CIA triad"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The total set of reachable interfaces, services, identities, and paths an attacker could target.
Practice
0006
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a government risk-validation project (GOV-RISK-M01-006), which statement most accurately defines "CIA triad"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
0007
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During an e-commerce application review (ECOM-WEB-M01-007), which statement most accurately defines "CIA triad"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0008
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a manufacturing and OT security review (MFG-OT-M01-008), which statement most accurately defines "CIA triad"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0009
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a mobile-services penetration test (MOB-TEST-M01-009), which statement most accurately defines "CIA triad"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The total set of reachable interfaces, services, identities, and paths an attacker could target.
Practice
0010
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-010), which statement most accurately defines "CIA triad"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0011
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During an authorized retail-company assessment (RET-LAB-M01-011), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unknown or unnecessary exposure increases the number of possible entry points.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
0012
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-012), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unmapped detections can leave important adversary techniques without coverage.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Unknown or unnecessary exposure increases the number of possible entry points.
Practice
0013
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-013), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unmapped detections can leave important adversary techniques without coverage.
  2. Unknown or unnecessary exposure increases the number of possible entry points.
  3. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
0014
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a financial-services purple-team test (FIN-PT-M01-014), which risk is most directly associated with "CIA triad"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Unknown or unnecessary exposure increases the number of possible entry points.
  4. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
Practice
0015
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-015), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unknown or unnecessary exposure increases the number of possible entry points.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
0016
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a government risk-validation project (GOV-RISK-M01-016), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unmapped detections can leave important adversary techniques without coverage.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Unknown or unnecessary exposure increases the number of possible entry points.
Practice
0017
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During an e-commerce application review (ECOM-WEB-M01-017), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Unknown or unnecessary exposure increases the number of possible entry points.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
0018
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a manufacturing and OT security review (MFG-OT-M01-018), which risk is most directly associated with "CIA triad"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Unknown or unnecessary exposure increases the number of possible entry points.
  4. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
Practice
0019
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a mobile-services penetration test (MOB-TEST-M01-019), which risk is most directly associated with "CIA triad"?

View answer choices
  1. Unknown or unnecessary exposure increases the number of possible entry points.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
0020
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-020), which risk is most directly associated with "CIA triad"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. Unmapped detections can leave important adversary techniques without coverage.
  4. Unknown or unnecessary exposure increases the number of possible entry points.
Practice
0021
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During an authorized retail-company assessment (RET-LAB-M01-021), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Continuously inventory assets and remove or restrict unnecessary exposure.
  3. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
0022
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-022), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  2. Continuously inventory assets and remove or restrict unnecessary exposure.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Place preventive and detective controls across multiple stages of the chain.
Practice
0023
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-023), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Continuously inventory assets and remove or restrict unnecessary exposure.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Map controls and detections to relevant ATT&CK techniques and validate coverage.
Practice
0024
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a financial-services purple-team test (FIN-PT-M01-024), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Place preventive and detective controls across multiple stages of the chain.
  3. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  4. Continuously inventory assets and remove or restrict unnecessary exposure.
Practice
0025
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-025), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Continuously inventory assets and remove or restrict unnecessary exposure.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
0026
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a government risk-validation project (GOV-RISK-M01-026), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  2. Continuously inventory assets and remove or restrict unnecessary exposure.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Place preventive and detective controls across multiple stages of the chain.
Practice
0027
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During an e-commerce application review (ECOM-WEB-M01-027), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Continuously inventory assets and remove or restrict unnecessary exposure.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Map controls and detections to relevant ATT&CK techniques and validate coverage.
Practice
0028
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a manufacturing and OT security review (MFG-OT-M01-028), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Place preventive and detective controls across multiple stages of the chain.
  3. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  4. Continuously inventory assets and remove or restrict unnecessary exposure.
Practice
0029
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a mobile-services penetration test (MOB-TEST-M01-029), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Continuously inventory assets and remove or restrict unnecessary exposure.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
0030
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-030), which action most directly controls the risk related to "CIA triad"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Continuously inventory assets and remove or restrict unnecessary exposure.
  4. Map controls and detections to relevant ATT&CK techniques and validate coverage.
Practice
0031
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During an authorized retail-company assessment (RET-LAB-M01-031), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A detection matrix showing covered and uncovered ATT&CK techniques.
  2. An external and internal asset inventory correlated with exposed services.
  3. A risk register linking assets to CIA impact ratings.
  4. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
Practice
0032
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-032), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  2. A detection matrix showing covered and uncovered ATT&CK techniques.
  3. An external and internal asset inventory correlated with exposed services.
  4. A risk register linking assets to CIA impact ratings.
Practice
0033
Module 1 · Foundation Domain 1 · Background CIA triad Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-033), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A risk register linking assets to CIA impact ratings.
  2. A detection matrix showing covered and uncovered ATT&CK techniques.
  3. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  4. An external and internal asset inventory correlated with exposed services.
Practice
0034
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a financial-services purple-team test (FIN-PT-M01-034), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. An external and internal asset inventory correlated with exposed services.
  2. A risk register linking assets to CIA impact ratings.
  3. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  4. A detection matrix showing covered and uncovered ATT&CK techniques.
Practice
0035
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-035), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A risk register linking assets to CIA impact ratings.
  2. An external and internal asset inventory correlated with exposed services.
  3. A detection matrix showing covered and uncovered ATT&CK techniques.
  4. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
Practice
0036
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During a government risk-validation project (GOV-RISK-M01-036), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  2. An external and internal asset inventory correlated with exposed services.
  3. A detection matrix showing covered and uncovered ATT&CK techniques.
  4. A risk register linking assets to CIA impact ratings.
Practice
0037
Module 1 · Applied Domain 1 · Background CIA triad Unanswered

During an e-commerce application review (ECOM-WEB-M01-037), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A detection matrix showing covered and uncovered ATT&CK techniques.
  2. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  3. A risk register linking assets to CIA impact ratings.
  4. An external and internal asset inventory correlated with exposed services.
Practice
0038
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a manufacturing and OT security review (MFG-OT-M01-038), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. An external and internal asset inventory correlated with exposed services.
  2. A risk register linking assets to CIA impact ratings.
  3. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  4. A detection matrix showing covered and uncovered ATT&CK techniques.
Practice
0039
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a mobile-services penetration test (MOB-TEST-M01-039), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A detection matrix showing covered and uncovered ATT&CK techniques.
  2. An external and internal asset inventory correlated with exposed services.
  3. A risk register linking assets to CIA impact ratings.
  4. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
Practice
0040
Module 1 · Advanced Domain 1 · Background CIA triad Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-040), which evidence best supports an assessment of "CIA triad"?

View answer choices
  1. A detection matrix showing covered and uncovered ATT&CK techniques.
  2. Telemetry mapped to reconnaissance, delivery, exploitation, installation, command and control, and objectives.
  3. A risk register linking assets to CIA impact ratings.
  4. An external and internal asset inventory correlated with exposed services.
Practice
0041
Module 1 · Foundation Domain 1 · Background Cyber Kill Chain Unanswered

During an authorized retail-company assessment (RET-LAB-M01-041), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0042
Module 1 · Foundation Domain 1 · Background Cyber Kill Chain Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-042), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0043
Module 1 · Foundation Domain 1 · Background Cyber Kill Chain Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-043), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. A staged model describing adversary activity from reconnaissance through actions on objectives.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
0044
Module 1 · Applied Domain 1 · Background Cyber Kill Chain Unanswered

During a financial-services purple-team test (FIN-PT-M01-044), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The total set of reachable interfaces, services, identities, and paths an attacker could target.
Practice
0045
Module 1 · Applied Domain 1 · Background Cyber Kill Chain Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-045), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0046
Module 1 · Applied Domain 1 · Background Cyber Kill Chain Unanswered

During a government risk-validation project (GOV-RISK-M01-046), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. A staged model describing adversary activity from reconnaissance through actions on objectives.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0047
Module 1 · Applied Domain 1 · Background Cyber Kill Chain Unanswered

During an e-commerce application review (ECOM-WEB-M01-047), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
0048
Module 1 · Advanced Domain 1 · Background Cyber Kill Chain Unanswered

During a manufacturing and OT security review (MFG-OT-M01-048), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The total set of reachable interfaces, services, identities, and paths an attacker could target.
Practice
0049
Module 1 · Advanced Domain 1 · Background Cyber Kill Chain Unanswered

During a mobile-services penetration test (MOB-TEST-M01-049), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
0050
Module 1 · Advanced Domain 1 · Background Cyber Kill Chain Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-050), which statement most accurately defines "Cyber Kill Chain"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. The total set of reachable interfaces, services, identities, and paths an attacker could target.
  3. A staged model describing adversary activity from reconnaissance through actions on objectives.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice