CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 2,051–2,100 of 5,000 matching questions

50 per page
2051
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2051), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2052
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2052), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2053
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2053), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Password compromise alone can permit account takeover when no independent factor is required.
Practice
2054
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a financial-services purple-team test (FIN-PT-M06-2054), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Password compromise alone can permit account takeover when no independent factor is required.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2055
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2055), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Password compromise alone can permit account takeover when no independent factor is required.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2056
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a government risk-validation project (GOV-RISK-M06-2056), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2057
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During an e-commerce application review (ECOM-WEB-M06-2057), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Password compromise alone can permit account takeover when no independent factor is required.
Practice
2058
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2058), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2059
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2059), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2060
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2060), which risk is most directly associated with "multi-factor authentication"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Password compromise alone can permit account takeover when no independent factor is required.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2061
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2061), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Use phishing-resistant MFA for privileged and remote access.
Practice
2062
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2062), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Use phishing-resistant MFA for privileged and remote access.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2063
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2063), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Use phishing-resistant MFA for privileged and remote access.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2064
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a financial-services purple-team test (FIN-PT-M06-2064), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Use phishing-resistant MFA for privileged and remote access.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2065
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2065), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Use phishing-resistant MFA for privileged and remote access.
Practice
2066
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a government risk-validation project (GOV-RISK-M06-2066), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Use phishing-resistant MFA for privileged and remote access.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
2067
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During an e-commerce application review (ECOM-WEB-M06-2067), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use phishing-resistant MFA for privileged and remote access.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2068
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2068), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Use phishing-resistant MFA for privileged and remote access.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
2069
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2069), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Maintain a repeatable assessment process tied to asset value and risk ownership.
  4. Use phishing-resistant MFA for privileged and remote access.
Practice
2070
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2070), which action most directly controls the risk related to "multi-factor authentication"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use phishing-resistant MFA for privileged and remote access.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
2071
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2071), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. Authentication logs showing factor type, device binding, and challenge outcome.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2072
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2072), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. Authentication logs showing factor type, device binding, and challenge outcome.
Practice
2073
Module 6 · Foundation Domain 3 · Security multi-factor authentication Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2073), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. Authentication logs showing factor type, device binding, and challenge outcome.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2074
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a financial-services purple-team test (FIN-PT-M06-2074), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Authentication logs showing factor type, device binding, and challenge outcome.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2075
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2075), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. Authentication logs showing factor type, device binding, and challenge outcome.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2076
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During a government risk-validation project (GOV-RISK-M06-2076), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. Authentication logs showing factor type, device binding, and challenge outcome.
Practice
2077
Module 6 · Applied Domain 3 · Security multi-factor authentication Unanswered

During an e-commerce application review (ECOM-WEB-M06-2077), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. Authentication logs showing factor type, device binding, and challenge outcome.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2078
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2078), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Authentication logs showing factor type, device binding, and challenge outcome.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2079
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2079), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Authentication logs showing factor type, device binding, and challenge outcome.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2080
Module 6 · Advanced Domain 3 · Security multi-factor authentication Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2080), which evidence best supports an assessment of "multi-factor authentication"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. Authentication logs showing factor type, device binding, and challenge outcome.
Practice
2081
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2081), which statement most accurately defines "network access control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Policy enforcement that evaluates identity or device posture before granting network access.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2082
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2082), which statement most accurately defines "network access control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Policy enforcement that evaluates identity or device posture before granting network access.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2083
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2083), which statement most accurately defines "network access control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Policy enforcement that evaluates identity or device posture before granting network access.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2084
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a financial-services purple-team test (FIN-PT-M06-2084), which statement most accurately defines "network access control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Policy enforcement that evaluates identity or device posture before granting network access.
Practice
2085
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2085), which statement most accurately defines "network access control"?

View answer choices
  1. Policy enforcement that evaluates identity or device posture before granting network access.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2086
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a government risk-validation project (GOV-RISK-M06-2086), which statement most accurately defines "network access control"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Policy enforcement that evaluates identity or device posture before granting network access.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
2087
Module 6 · Applied Domain 3 · Security network access control Unanswered

During an e-commerce application review (ECOM-WEB-M06-2087), which statement most accurately defines "network access control"?

View answer choices
  1. Policy enforcement that evaluates identity or device posture before granting network access.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2088
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2088), which statement most accurately defines "network access control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Policy enforcement that evaluates identity or device posture before granting network access.
Practice
2089
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2089), which statement most accurately defines "network access control"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. Policy enforcement that evaluates identity or device posture before granting network access.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
2090
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2090), which statement most accurately defines "network access control"?

View answer choices
  1. Policy enforcement that evaluates identity or device posture before granting network access.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
2091
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During an authorized retail-company assessment (RET-LAB-M06-2091), which risk is most directly associated with "network access control"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Unmanaged or compromised devices may connect directly to sensitive segments.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2092
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a hospital incident-response exercise (HLT-SOC-M06-2092), which risk is most directly associated with "network access control"?

View answer choices
  1. Unmanaged or compromised devices may connect directly to sensitive segments.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2093
Module 6 · Foundation Domain 3 · Security network access control Unanswered

During a university cyber-range engagement (EDU-RANGE-M06-2093), which risk is most directly associated with "network access control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unmanaged or compromised devices may connect directly to sensitive segments.
Practice
2094
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a financial-services purple-team test (FIN-PT-M06-2094), which risk is most directly associated with "network access control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unmanaged or compromised devices may connect directly to sensitive segments.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2095
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a cloud startup security audit (CLD-AUDIT-M06-2095), which risk is most directly associated with "network access control"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Unmanaged or compromised devices may connect directly to sensitive segments.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2096
Module 6 · Applied Domain 3 · Security network access control Unanswered

During a government risk-validation project (GOV-RISK-M06-2096), which risk is most directly associated with "network access control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unmanaged or compromised devices may connect directly to sensitive segments.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
2097
Module 6 · Applied Domain 3 · Security network access control Unanswered

During an e-commerce application review (ECOM-WEB-M06-2097), which risk is most directly associated with "network access control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unmanaged or compromised devices may connect directly to sensitive segments.
Practice
2098
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a manufacturing and OT security review (MFG-OT-M06-2098), which risk is most directly associated with "network access control"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unmanaged or compromised devices may connect directly to sensitive segments.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
2099
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a mobile-services penetration test (MOB-TEST-M06-2099), which risk is most directly associated with "network access control"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unmanaged or compromised devices may connect directly to sensitive segments.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
2100
Module 6 · Advanced Domain 3 · Security network access control Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M06-2100), which risk is most directly associated with "network access control"?

View answer choices
  1. Unmanaged or compromised devices may connect directly to sensitive segments.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice