CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 4,301–4,350 of 5,000 matching questions

50 per page
4301
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During an authorized retail-company assessment (RET-LAB-M17-4301), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  2. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  3. Maintain playbooks, decision authority, communications, and exercises.
  4. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
Practice
4302
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a hospital incident-response exercise (HLT-SOC-M17-4302), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  2. Maintain playbooks, decision authority, communications, and exercises.
  3. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  4. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
Practice
4303
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a university cyber-range engagement (EDU-RANGE-M17-4303), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Maintain playbooks, decision authority, communications, and exercises.
  2. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  3. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  4. Approve precise targets, exclusions, stop conditions, communication, and data handling.
Practice
4304
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a financial-services purple-team test (FIN-PT-M17-4304), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  2. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  3. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  4. Maintain playbooks, decision authority, communications, and exercises.
Practice
4305
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a cloud startup security audit (CLD-AUDIT-M17-4305), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  2. Maintain playbooks, decision authority, communications, and exercises.
  3. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  4. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
Practice
4306
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a government risk-validation project (GOV-RISK-M17-4306), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Maintain playbooks, decision authority, communications, and exercises.
  2. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  3. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  4. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
Practice
4307
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During an e-commerce application review (ECOM-WEB-M17-4307), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  2. Maintain playbooks, decision authority, communications, and exercises.
  3. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  4. Approve precise targets, exclusions, stop conditions, communication, and data handling.
Practice
4308
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a manufacturing and OT security review (MFG-OT-M17-4308), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  2. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  3. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  4. Maintain playbooks, decision authority, communications, and exercises.
Practice
4309
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a mobile-services penetration test (MOB-TEST-M17-4309), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  2. Maintain playbooks, decision authority, communications, and exercises.
  3. Approve precise targets, exclusions, stop conditions, communication, and data handling.
  4. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
Practice
4310
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M17-4310), which action most directly controls the risk related to "mobile assessment methodology"?

View answer choices
  1. Combine static, dynamic, network, and backend testing on authorized devices and accounts.
  2. Maintain playbooks, decision authority, communications, and exercises.
  3. Tie every phase to authorization, objectives, safety, evidence, and cleanup.
  4. Approve precise targets, exclusions, stop conditions, communication, and data handling.
Practice
4311
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During an authorized retail-company assessment (RET-LAB-M17-4311), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An engagement timeline mapping approved actions and evidence to each phase.
  2. A signed rules-of-engagement document available to the testing and response teams.
  3. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  4. A mobile report linking code, device, traffic, and API evidence.
Practice
4312
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a hospital incident-response exercise (HLT-SOC-M17-4312), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. A mobile report linking code, device, traffic, and API evidence.
  2. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  3. A signed rules-of-engagement document available to the testing and response teams.
  4. An engagement timeline mapping approved actions and evidence to each phase.
Practice
4313
Module 17 · Foundation Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a university cyber-range engagement (EDU-RANGE-M17-4313), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An engagement timeline mapping approved actions and evidence to each phase.
  2. A mobile report linking code, device, traffic, and API evidence.
  3. A signed rules-of-engagement document available to the testing and response teams.
  4. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
Practice
4314
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a financial-services purple-team test (FIN-PT-M17-4314), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. A mobile report linking code, device, traffic, and API evidence.
  2. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  3. An engagement timeline mapping approved actions and evidence to each phase.
  4. A signed rules-of-engagement document available to the testing and response teams.
Practice
4315
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a cloud startup security audit (CLD-AUDIT-M17-4315), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An engagement timeline mapping approved actions and evidence to each phase.
  2. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  3. A signed rules-of-engagement document available to the testing and response teams.
  4. A mobile report linking code, device, traffic, and API evidence.
Practice
4316
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a government risk-validation project (GOV-RISK-M17-4316), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  2. A signed rules-of-engagement document available to the testing and response teams.
  3. A mobile report linking code, device, traffic, and API evidence.
  4. An engagement timeline mapping approved actions and evidence to each phase.
Practice
4317
Module 17 · Applied Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During an e-commerce application review (ECOM-WEB-M17-4317), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. A signed rules-of-engagement document available to the testing and response teams.
  2. A mobile report linking code, device, traffic, and API evidence.
  3. An engagement timeline mapping approved actions and evidence to each phase.
  4. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
Practice
4318
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a manufacturing and OT security review (MFG-OT-M17-4318), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  2. An engagement timeline mapping approved actions and evidence to each phase.
  3. A mobile report linking code, device, traffic, and API evidence.
  4. A signed rules-of-engagement document available to the testing and response teams.
Practice
4319
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a mobile-services penetration test (MOB-TEST-M17-4319), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. An engagement timeline mapping approved actions and evidence to each phase.
  2. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  3. A signed rules-of-engagement document available to the testing and response teams.
  4. A mobile report linking code, device, traffic, and API evidence.
Practice
4320
Module 17 · Advanced Domain 5 · Procedures / Methodology mobile assessment methodology Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M17-4320), which evidence best supports an assessment of "mobile assessment methodology"?

View answer choices
  1. A mobile report linking code, device, traffic, and API evidence.
  2. An incident record containing timeline, evidence, decisions, recovery, and corrective actions.
  3. A signed rules-of-engagement document available to the testing and response teams.
  4. An engagement timeline mapping approved actions and evidence to each phase.
Practice
4321
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During an authorized retail-company assessment (RET-LAB-M18-4321), which statement most accurately defines "IoT threat"?

View answer choices
  1. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  2. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
4322
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a hospital incident-response exercise (HLT-SOC-M18-4322), which statement most accurately defines "IoT threat"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
4323
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a university cyber-range engagement (EDU-RANGE-M18-4323), which statement most accurately defines "IoT threat"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
Practice
4324
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a financial-services purple-team test (FIN-PT-M18-4324), which statement most accurately defines "IoT threat"?

View answer choices
  1. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
4325
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a cloud startup security audit (CLD-AUDIT-M18-4325), which statement most accurately defines "IoT threat"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
4326
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a government risk-validation project (GOV-RISK-M18-4326), which statement most accurately defines "IoT threat"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. The confidentiality, integrity, and availability objectives used to reason about information security.
  3. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  4. A knowledge base that organizes adversary tactics and techniques from observed behavior.
Practice
4327
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During an e-commerce application review (ECOM-WEB-M18-4327), which statement most accurately defines "IoT threat"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. A staged model describing adversary activity from reconnaissance through actions on objectives.
  4. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
Practice
4328
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a manufacturing and OT security review (MFG-OT-M18-4328), which statement most accurately defines "IoT threat"?

View answer choices
  1. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  2. A staged model describing adversary activity from reconnaissance through actions on objectives.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. The confidentiality, integrity, and availability objectives used to reason about information security.
Practice
4329
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a mobile-services penetration test (MOB-TEST-M18-4329), which statement most accurately defines "IoT threat"?

View answer choices
  1. The confidentiality, integrity, and availability objectives used to reason about information security.
  2. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
  3. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  4. A staged model describing adversary activity from reconnaissance through actions on objectives.
Practice
4330
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M18-4330), which statement most accurately defines "IoT threat"?

View answer choices
  1. A staged model describing adversary activity from reconnaissance through actions on objectives.
  2. A knowledge base that organizes adversary tactics and techniques from observed behavior.
  3. The confidentiality, integrity, and availability objectives used to reason about information security.
  4. A threat targeting connected embedded devices, their services, communications, or supporting platforms.
Practice
4331
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During an authorized retail-company assessment (RET-LAB-M18-4331), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
4332
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a hospital incident-response exercise (HLT-SOC-M18-4332), which risk is most directly associated with "IoT threat"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  4. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
Practice
4333
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a university cyber-range engagement (EDU-RANGE-M18-4333), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. Unmapped detections can leave important adversary techniques without coverage.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
4334
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a financial-services purple-team test (FIN-PT-M18-4334), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
Practice
4335
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a cloud startup security audit (CLD-AUDIT-M18-4335), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
4336
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a government risk-validation project (GOV-RISK-M18-4336), which risk is most directly associated with "IoT threat"?

View answer choices
  1. A control focused on only one objective can leave the other security objectives exposed.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  4. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
Practice
4337
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During an e-commerce application review (ECOM-WEB-M18-4337), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
4338
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a manufacturing and OT security review (MFG-OT-M18-4338), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  2. Unmapped detections can leave important adversary techniques without coverage.
  3. A control focused on only one objective can leave the other security objectives exposed.
  4. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
Practice
4339
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a mobile-services penetration test (MOB-TEST-M18-4339), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  2. A control focused on only one objective can leave the other security objectives exposed.
  3. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  4. Unmapped detections can leave important adversary techniques without coverage.
Practice
4340
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M18-4340), which risk is most directly associated with "IoT threat"?

View answer choices
  1. Default credentials and long-lived vulnerable firmware can provide persistent network footholds.
  2. Defenders who monitor only the final stage miss earlier opportunities to interrupt an intrusion.
  3. Unmapped detections can leave important adversary techniques without coverage.
  4. A control focused on only one objective can leave the other security objectives exposed.
Practice
4341
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During an authorized retail-company assessment (RET-LAB-M18-4341), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  3. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  4. Place preventive and detective controls across multiple stages of the chain.
Practice
4342
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a hospital incident-response exercise (HLT-SOC-M18-4342), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Map controls and detections to relevant ATT&CK techniques and validate coverage.
Practice
4343
Module 18 · Foundation Domain 1 · Background IoT threat Unanswered

During a university cyber-range engagement (EDU-RANGE-M18-4343), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Change defaults, update firmware, inventory devices, and isolate IoT networks.
Practice
4344
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a financial-services purple-team test (FIN-PT-M18-4344), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
4345
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a cloud startup security audit (CLD-AUDIT-M18-4345), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  3. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  4. Place preventive and detective controls across multiple stages of the chain.
Practice
4346
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During a government risk-validation project (GOV-RISK-M18-4346), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Place preventive and detective controls across multiple stages of the chain.
  2. Map each asset and threat to confidentiality, integrity, and availability requirements.
  3. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  4. Map controls and detections to relevant ATT&CK techniques and validate coverage.
Practice
4347
Module 18 · Applied Domain 1 · Background IoT threat Unanswered

During an e-commerce application review (ECOM-WEB-M18-4347), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Change defaults, update firmware, inventory devices, and isolate IoT networks.
Practice
4348
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a manufacturing and OT security review (MFG-OT-M18-4348), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Map each asset and threat to confidentiality, integrity, and availability requirements.
Practice
4349
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a mobile-services penetration test (MOB-TEST-M18-4349), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  2. Change defaults, update firmware, inventory devices, and isolate IoT networks.
  3. Map each asset and threat to confidentiality, integrity, and availability requirements.
  4. Place preventive and detective controls across multiple stages of the chain.
Practice
4350
Module 18 · Advanced Domain 1 · Background IoT threat Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M18-4350), which action most directly controls the risk related to "IoT threat"?

View answer choices
  1. Map each asset and threat to confidentiality, integrity, and availability requirements.
  2. Map controls and detections to relevant ATT&CK techniques and validate coverage.
  3. Place preventive and detective controls across multiple stages of the chain.
  4. Change defaults, update firmware, inventory devices, and isolate IoT networks.
Practice