CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 751–800 of 5,000 matching questions

50 per page
0751
Module 1 · Foundation Domain 7 · Ethics scope adherence Unanswered

During an authorized retail-company assessment (RET-LAB-M01-751), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A current signed authorization covering the exact target and activity.
  3. A risk register linking assets to CIA impact ratings.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0752
Module 1 · Foundation Domain 7 · Ethics scope adherence Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-752), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. A risk register linking assets to CIA impact ratings.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. Activity logs proving each action stayed within approved targets and times.
Practice
0753
Module 1 · Foundation Domain 7 · Ethics scope adherence Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-753), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  3. A current signed authorization covering the exact target and activity.
  4. A risk register linking assets to CIA impact ratings.
Practice
0754
Module 1 · Applied Domain 7 · Ethics scope adherence Unanswered

During a financial-services purple-team test (FIN-PT-M01-754), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A risk register linking assets to CIA impact ratings.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. A current signed authorization covering the exact target and activity.
Practice
0755
Module 1 · Applied Domain 7 · Ethics scope adherence Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-755), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A risk register linking assets to CIA impact ratings.
  3. A current signed authorization covering the exact target and activity.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0756
Module 1 · Applied Domain 7 · Ethics scope adherence Unanswered

During a government risk-validation project (GOV-RISK-M01-756), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  2. A risk register linking assets to CIA impact ratings.
  3. A current signed authorization covering the exact target and activity.
  4. Activity logs proving each action stayed within approved targets and times.
Practice
0757
Module 1 · Applied Domain 7 · Ethics scope adherence Unanswered

During an e-commerce application review (ECOM-WEB-M01-757), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  3. Activity logs proving each action stayed within approved targets and times.
  4. A risk register linking assets to CIA impact ratings.
Practice
0758
Module 1 · Advanced Domain 7 · Ethics scope adherence Unanswered

During a manufacturing and OT security review (MFG-OT-M01-758), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A risk register linking assets to CIA impact ratings.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. A current signed authorization covering the exact target and activity.
Practice
0759
Module 1 · Advanced Domain 7 · Ethics scope adherence Unanswered

During a mobile-services penetration test (MOB-TEST-M01-759), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A risk register linking assets to CIA impact ratings.
  3. A current signed authorization covering the exact target and activity.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0760
Module 1 · Advanced Domain 7 · Ethics scope adherence Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-760), which evidence best supports an assessment of "scope adherence"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. A risk register linking assets to CIA impact ratings.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. Activity logs proving each action stayed within approved targets and times.
Practice
0761
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During an authorized retail-company assessment (RET-LAB-M01-761), which statement most accurately defines "written authorization"?

View answer choices
  1. Explicit documented permission from the accountable owner before security testing begins.
  2. The professional obligation to perform only the systems and techniques approved for an engagement.
  3. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0762
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-762), which statement most accurately defines "written authorization"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. Explicit documented permission from the accountable owner before security testing begins.
  3. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  4. The professional obligation to perform only the systems and techniques approved for an engagement.
Practice
0763
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-763), which statement most accurately defines "written authorization"?

View answer choices
  1. Explicit documented permission from the accountable owner before security testing begins.
  2. The professional obligation to perform only the systems and techniques approved for an engagement.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
Practice
0764
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a financial-services purple-team test (FIN-PT-M01-764), which statement most accurately defines "written authorization"?

View answer choices
  1. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. The professional obligation to perform only the systems and techniques approved for an engagement.
  4. Explicit documented permission from the accountable owner before security testing begins.
Practice
0765
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-765), which statement most accurately defines "written authorization"?

View answer choices
  1. Explicit documented permission from the accountable owner before security testing begins.
  2. The professional obligation to perform only the systems and techniques approved for an engagement.
  3. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0766
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a government risk-validation project (GOV-RISK-M01-766), which statement most accurately defines "written authorization"?

View answer choices
  1. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. Explicit documented permission from the accountable owner before security testing begins.
  4. The professional obligation to perform only the systems and techniques approved for an engagement.
Practice
0767
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During an e-commerce application review (ECOM-WEB-M01-767), which statement most accurately defines "written authorization"?

View answer choices
  1. The professional obligation to perform only the systems and techniques approved for an engagement.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. Explicit documented permission from the accountable owner before security testing begins.
  4. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
Practice
0768
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a manufacturing and OT security review (MFG-OT-M01-768), which statement most accurately defines "written authorization"?

View answer choices
  1. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  2. The professional obligation to perform only the systems and techniques approved for an engagement.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. Explicit documented permission from the accountable owner before security testing begins.
Practice
0769
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a mobile-services penetration test (MOB-TEST-M01-769), which statement most accurately defines "written authorization"?

View answer choices
  1. Explicit documented permission from the accountable owner before security testing begins.
  2. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
  3. The professional obligation to perform only the systems and techniques approved for an engagement.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
0770
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-770), which statement most accurately defines "written authorization"?

View answer choices
  1. Explicit documented permission from the accountable owner before security testing begins.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. The professional obligation to perform only the systems and techniques approved for an engagement.
  4. Coordinated reporting that gives an affected party enough evidence and time to remediate while minimizing harm.
Practice
0771
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During an authorized retail-company assessment (RET-LAB-M01-771), which risk is most directly associated with "written authorization"?

View answer choices
  1. Premature publication or excessive data collection can increase exploitation and privacy risk.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Technical ability does not create legal or ethical permission to access a system.
  4. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
Practice
0772
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-772), which risk is most directly associated with "written authorization"?

View answer choices
  1. Technical ability does not create legal or ethical permission to access a system.
  2. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  3. Premature publication or excessive data collection can increase exploitation and privacy risk.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
0773
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-773), which risk is most directly associated with "written authorization"?

View answer choices
  1. Premature publication or excessive data collection can increase exploitation and privacy risk.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. Technical ability does not create legal or ethical permission to access a system.
Practice
0774
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a financial-services purple-team test (FIN-PT-M01-774), which risk is most directly associated with "written authorization"?

View answer choices
  1. Technical ability does not create legal or ethical permission to access a system.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. Premature publication or excessive data collection can increase exploitation and privacy risk.
Practice
0775
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-775), which risk is most directly associated with "written authorization"?

View answer choices
  1. Premature publication or excessive data collection can increase exploitation and privacy risk.
  2. Technical ability does not create legal or ethical permission to access a system.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
Practice
0776
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a government risk-validation project (GOV-RISK-M01-776), which risk is most directly associated with "written authorization"?

View answer choices
  1. Technical ability does not create legal or ethical permission to access a system.
  2. Premature publication or excessive data collection can increase exploitation and privacy risk.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
0777
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During an e-commerce application review (ECOM-WEB-M01-777), which risk is most directly associated with "written authorization"?

View answer choices
  1. Premature publication or excessive data collection can increase exploitation and privacy risk.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. Technical ability does not create legal or ethical permission to access a system.
Practice
0778
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a manufacturing and OT security review (MFG-OT-M01-778), which risk is most directly associated with "written authorization"?

View answer choices
  1. Technical ability does not create legal or ethical permission to access a system.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. Premature publication or excessive data collection can increase exploitation and privacy risk.
Practice
0779
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a mobile-services penetration test (MOB-TEST-M01-779), which risk is most directly associated with "written authorization"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Technical ability does not create legal or ethical permission to access a system.
  3. Premature publication or excessive data collection can increase exploitation and privacy risk.
  4. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
Practice
0780
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-780), which risk is most directly associated with "written authorization"?

View answer choices
  1. Technical ability does not create legal or ethical permission to access a system.
  2. Premature publication or excessive data collection can increase exploitation and privacy risk.
  3. Crossing a target, data, technique, or time boundary can harm third parties and invalidate trust.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
0781
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During an authorized retail-company assessment (RET-LAB-M01-781), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Report privately through an approved channel, minimize data, and coordinate timelines.
  2. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Verify the authorizing party, scope, dates, contacts, and signatures.
Practice
0782
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-782), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Verify the authorizing party, scope, dates, contacts, and signatures.
  2. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Report privately through an approved channel, minimize data, and coordinate timelines.
Practice
0783
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-783), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Verify the authorizing party, scope, dates, contacts, and signatures.
  3. Report privately through an approved channel, minimize data, and coordinate timelines.
  4. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
Practice
0784
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a financial-services purple-team test (FIN-PT-M01-784), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Verify the authorizing party, scope, dates, contacts, and signatures.
  2. Report privately through an approved channel, minimize data, and coordinate timelines.
  3. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
0785
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-785), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Report privately through an approved channel, minimize data, and coordinate timelines.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  4. Verify the authorizing party, scope, dates, contacts, and signatures.
Practice
0786
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a government risk-validation project (GOV-RISK-M01-786), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Verify the authorizing party, scope, dates, contacts, and signatures.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  4. Report privately through an approved channel, minimize data, and coordinate timelines.
Practice
0787
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During an e-commerce application review (ECOM-WEB-M01-787), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Report privately through an approved channel, minimize data, and coordinate timelines.
  2. Verify the authorizing party, scope, dates, contacts, and signatures.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
Practice
0788
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a manufacturing and OT security review (MFG-OT-M01-788), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Verify the authorizing party, scope, dates, contacts, and signatures.
  2. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  3. Report privately through an approved channel, minimize data, and coordinate timelines.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
0789
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a mobile-services penetration test (MOB-TEST-M01-789), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Report privately through an approved channel, minimize data, and coordinate timelines.
  2. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Verify the authorizing party, scope, dates, contacts, and signatures.
Practice
0790
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-790), which action most directly controls the risk related to "written authorization"?

View answer choices
  1. Report privately through an approved channel, minimize data, and coordinate timelines.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Verify the authorizing party, scope, dates, contacts, and signatures.
  4. Use scope controls, allowlists, checkpoints, and immediate escalation of ambiguity.
Practice
0791
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During an authorized retail-company assessment (RET-LAB-M01-791), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A risk register linking assets to CIA impact ratings.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0792
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a hospital incident-response exercise (HLT-SOC-M01-792), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A risk register linking assets to CIA impact ratings.
  4. A current signed authorization covering the exact target and activity.
Practice
0793
Module 1 · Foundation Domain 7 · Ethics written authorization Unanswered

During a university cyber-range engagement (EDU-RANGE-M01-793), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. A risk register linking assets to CIA impact ratings.
Practice
0794
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a financial-services purple-team test (FIN-PT-M01-794), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A risk register linking assets to CIA impact ratings.
  2. A current signed authorization covering the exact target and activity.
  3. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  4. Activity logs proving each action stayed within approved targets and times.
Practice
0795
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a cloud startup security audit (CLD-AUDIT-M01-795), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. A risk register linking assets to CIA impact ratings.
  3. Activity logs proving each action stayed within approved targets and times.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0796
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During a government risk-validation project (GOV-RISK-M01-796), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  2. A risk register linking assets to CIA impact ratings.
  3. Activity logs proving each action stayed within approved targets and times.
  4. A current signed authorization covering the exact target and activity.
Practice
0797
Module 1 · Applied Domain 7 · Ethics written authorization Unanswered

During an e-commerce application review (ECOM-WEB-M01-797), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  3. A current signed authorization covering the exact target and activity.
  4. A risk register linking assets to CIA impact ratings.
Practice
0798
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a manufacturing and OT security review (MFG-OT-M01-798), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
  2. A risk register linking assets to CIA impact ratings.
  3. A current signed authorization covering the exact target and activity.
  4. Activity logs proving each action stayed within approved targets and times.
Practice
0799
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a mobile-services penetration test (MOB-TEST-M01-799), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. Activity logs proving each action stayed within approved targets and times.
  2. A risk register linking assets to CIA impact ratings.
  3. A current signed authorization covering the exact target and activity.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice
0800
Module 1 · Advanced Domain 7 · Ethics written authorization Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M01-800), which evidence best supports an assessment of "written authorization"?

View answer choices
  1. A current signed authorization covering the exact target and activity.
  2. Activity logs proving each action stayed within approved targets and times.
  3. A risk register linking assets to CIA impact ratings.
  4. A disclosure record showing evidence, secure communication, acknowledgement, and remediation coordination.
Practice