CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 3,251–3,300 of 5,000 matching questions

50 per page
3251
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During an authorized retail-company assessment (RET-LAB-M11-3251), which risk is most directly associated with "secure session management"?

View answer choices
  1. Long-lived or exposed tokens can allow unauthorized session reuse.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3252
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a hospital incident-response exercise (HLT-SOC-M11-3252), which risk is most directly associated with "secure session management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Long-lived or exposed tokens can allow unauthorized session reuse.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3253
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a university cyber-range engagement (EDU-RANGE-M11-3253), which risk is most directly associated with "secure session management"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Long-lived or exposed tokens can allow unauthorized session reuse.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3254
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a financial-services purple-team test (FIN-PT-M11-3254), which risk is most directly associated with "secure session management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Long-lived or exposed tokens can allow unauthorized session reuse.
Practice
3255
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a cloud startup security audit (CLD-AUDIT-M11-3255), which risk is most directly associated with "secure session management"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Long-lived or exposed tokens can allow unauthorized session reuse.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3256
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a government risk-validation project (GOV-RISK-M11-3256), which risk is most directly associated with "secure session management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Long-lived or exposed tokens can allow unauthorized session reuse.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3257
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During an e-commerce application review (ECOM-WEB-M11-3257), which risk is most directly associated with "secure session management"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Long-lived or exposed tokens can allow unauthorized session reuse.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3258
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a manufacturing and OT security review (MFG-OT-M11-3258), which risk is most directly associated with "secure session management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Long-lived or exposed tokens can allow unauthorized session reuse.
Practice
3259
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a mobile-services penetration test (MOB-TEST-M11-3259), which risk is most directly associated with "secure session management"?

View answer choices
  1. Long-lived or exposed tokens can allow unauthorized session reuse.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3260
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M11-3260), which risk is most directly associated with "secure session management"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Long-lived or exposed tokens can allow unauthorized session reuse.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3261
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During an authorized retail-company assessment (RET-LAB-M11-3261), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
3262
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a hospital incident-response exercise (HLT-SOC-M11-3262), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
Practice
3263
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a university cyber-range engagement (EDU-RANGE-M11-3263), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
3264
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a financial-services purple-team test (FIN-PT-M11-3264), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
3265
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a cloud startup security audit (CLD-AUDIT-M11-3265), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
3266
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a government risk-validation project (GOV-RISK-M11-3266), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Design overlapping controls across identity, endpoint, network, application, and data layers.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
Practice
3267
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During an e-commerce application review (ECOM-WEB-M11-3267), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  2. Design overlapping controls across identity, endpoint, network, application, and data layers.
  3. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
3268
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a manufacturing and OT security review (MFG-OT-M11-3268), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain a repeatable assessment process tied to asset value and risk ownership.
  2. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
Practice
3269
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a mobile-services penetration test (MOB-TEST-M11-3269), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  2. Maintain a repeatable assessment process tied to asset value and risk ownership.
  3. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  4. Design overlapping controls across identity, endpoint, network, application, and data layers.
Practice
3270
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M11-3270), which action most directly controls the risk related to "secure session management"?

View answer choices
  1. Use unpredictable tokens, TLS, secure cookie flags, short lifetimes, and revocation.
  2. Maintain tested playbooks, roles, communications, evidence handling, and exercises.
  3. Design overlapping controls across identity, endpoint, network, application, and data layers.
  4. Maintain a repeatable assessment process tied to asset value and risk ownership.
Practice
3271
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During an authorized retail-company assessment (RET-LAB-M11-3271), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. Session logs showing issuance, rotation, client context, expiration, and invalidation.
Practice
3272
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a hospital incident-response exercise (HLT-SOC-M11-3272), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3273
Module 11 · Foundation Domain 3 · Security secure session management Unanswered

During a university cyber-range engagement (EDU-RANGE-M11-3273), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
3274
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a financial-services purple-team test (FIN-PT-M11-3274), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
3275
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a cloud startup security audit (CLD-AUDIT-M11-3275), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. Session logs showing issuance, rotation, client context, expiration, and invalidation.
Practice
3276
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During a government risk-validation project (GOV-RISK-M11-3276), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3277
Module 11 · Applied Domain 3 · Security secure session management Unanswered

During an e-commerce application review (ECOM-WEB-M11-3277), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. A risk register with likelihood, impact, owner, treatment, and review date.
  2. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
3278
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a manufacturing and OT security review (MFG-OT-M11-3278), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
3279
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a mobile-services penetration test (MOB-TEST-M11-3279), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. Session logs showing issuance, rotation, client context, expiration, and invalidation.
Practice
3280
Module 11 · Advanced Domain 3 · Security secure session management Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M11-3280), which evidence best supports an assessment of "secure session management"?

View answer choices
  1. Session logs showing issuance, rotation, client context, expiration, and invalidation.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
3281
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3281), which statement most accurately defines "honeypot"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. A monitored decoy designed to attract interaction and reveal attacker behavior.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
3282
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3282), which statement most accurately defines "honeypot"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. A monitored decoy designed to attract interaction and reveal attacker behavior.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
3283
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3283), which statement most accurately defines "honeypot"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. A monitored decoy designed to attract interaction and reveal attacker behavior.
Practice
3284
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a financial-services purple-team test (FIN-PT-M12-3284), which statement most accurately defines "honeypot"?

View answer choices
  1. A monitored decoy designed to attract interaction and reveal attacker behavior.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
3285
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3285), which statement most accurately defines "honeypot"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. A monitored decoy designed to attract interaction and reveal attacker behavior.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
3286
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a government risk-validation project (GOV-RISK-M12-3286), which statement most accurately defines "honeypot"?

View answer choices
  1. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  2. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  3. A monitored decoy designed to attract interaction and reveal attacker behavior.
  4. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
Practice
3287
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During an e-commerce application review (ECOM-WEB-M12-3287), which statement most accurately defines "honeypot"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. A monitored decoy designed to attract interaction and reveal attacker behavior.
Practice
3288
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3288), which statement most accurately defines "honeypot"?

View answer choices
  1. A monitored decoy designed to attract interaction and reveal attacker behavior.
  2. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  3. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  4. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
Practice
3289
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3289), which statement most accurately defines "honeypot"?

View answer choices
  1. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  2. A monitored decoy designed to attract interaction and reveal attacker behavior.
  3. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  4. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
Practice
3290
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3290), which statement most accurately defines "honeypot"?

View answer choices
  1. Layering independent preventive, detective, and corrective controls so one failure is not decisive.
  2. Coordinated preparation, detection, analysis, containment, eradication, recovery, and improvement after incidents.
  3. Identification and evaluation of threats, vulnerabilities, likelihood, and impact to support treatment decisions.
  4. A monitored decoy designed to attract interaction and reveal attacker behavior.
Practice
3291
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During an authorized retail-company assessment (RET-LAB-M12-3291), which risk is most directly associated with "honeypot"?

View answer choices
  1. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3292
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During a hospital incident-response exercise (HLT-SOC-M12-3292), which risk is most directly associated with "honeypot"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3293
Module 12 · Foundation Domain 3 · Security honeypot Unanswered

During a university cyber-range engagement (EDU-RANGE-M12-3293), which risk is most directly associated with "honeypot"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3294
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a financial-services purple-team test (FIN-PT-M12-3294), which risk is most directly associated with "honeypot"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Poor isolation can let an attacker pivot from the decoy or identify it easily.
Practice
3295
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a cloud startup security audit (CLD-AUDIT-M12-3295), which risk is most directly associated with "honeypot"?

View answer choices
  1. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3296
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During a government risk-validation project (GOV-RISK-M12-3296), which risk is most directly associated with "honeypot"?

View answer choices
  1. Controls chosen without risk context may protect low-value assets while critical risks remain.
  2. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice
3297
Module 12 · Applied Domain 3 · Security honeypot Unanswered

During an e-commerce application review (ECOM-WEB-M12-3297), which risk is most directly associated with "honeypot"?

View answer choices
  1. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  4. Reliance on a single control creates a direct path when that control fails or is bypassed.
Practice
3298
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a manufacturing and OT security review (MFG-OT-M12-3298), which risk is most directly associated with "honeypot"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Controls chosen without risk context may protect low-value assets while critical risks remain.
  3. Reliance on a single control creates a direct path when that control fails or is bypassed.
  4. Poor isolation can let an attacker pivot from the decoy or identify it easily.
Practice
3299
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a mobile-services penetration test (MOB-TEST-M12-3299), which risk is most directly associated with "honeypot"?

View answer choices
  1. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
  2. Reliance on a single control creates a direct path when that control fails or is bypassed.
  3. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  4. Controls chosen without risk context may protect low-value assets while critical risks remain.
Practice
3300
Module 12 · Advanced Domain 3 · Security honeypot Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M12-3300), which risk is most directly associated with "honeypot"?

View answer choices
  1. Reliance on a single control creates a direct path when that control fails or is bypassed.
  2. Poor isolation can let an attacker pivot from the decoy or identify it easily.
  3. Controls chosen without risk context may protect low-value assets while critical risks remain.
  4. Unplanned actions can destroy evidence, prolong compromise, or disrupt recovery.
Practice