CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 4,701–4,750 of 5,000 matching questions

50 per page
4701
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During an authorized retail-company assessment (RET-LAB-M19-4701), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Configure workspaces, API keys, modules, and scope before collection.
  4. Minimize public leakage and review graph results for source quality and authorization.
Practice
4702
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a hospital incident-response exercise (HLT-SOC-M19-4702), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Minimize public leakage and review graph results for source quality and authorization.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Configure workspaces, API keys, modules, and scope before collection.
  4. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
Practice
4703
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a university cyber-range engagement (EDU-RANGE-M19-4703), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  2. Minimize public leakage and review graph results for source quality and authorization.
  3. Configure workspaces, API keys, modules, and scope before collection.
  4. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
Practice
4704
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a financial-services purple-team test (FIN-PT-M19-4704), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  2. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  3. Minimize public leakage and review graph results for source quality and authorization.
  4. Configure workspaces, API keys, modules, and scope before collection.
Practice
4705
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a cloud startup security audit (CLD-AUDIT-M19-4705), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  2. Configure workspaces, API keys, modules, and scope before collection.
  3. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  4. Minimize public leakage and review graph results for source quality and authorization.
Practice
4706
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a government risk-validation project (GOV-RISK-M19-4706), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Configure workspaces, API keys, modules, and scope before collection.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Minimize public leakage and review graph results for source quality and authorization.
  4. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
Practice
4707
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During an e-commerce application review (ECOM-WEB-M19-4707), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  2. Minimize public leakage and review graph results for source quality and authorization.
  3. Configure workspaces, API keys, modules, and scope before collection.
  4. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
Practice
4708
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a manufacturing and OT security review (MFG-OT-M19-4708), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  2. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  3. Minimize public leakage and review graph results for source quality and authorization.
  4. Configure workspaces, API keys, modules, and scope before collection.
Practice
4709
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a mobile-services penetration test (MOB-TEST-M19-4709), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  2. Configure workspaces, API keys, modules, and scope before collection.
  3. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  4. Minimize public leakage and review graph results for source quality and authorization.
Practice
4710
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M19-4710), which action most directly controls the risk related to "Kubernetes"?

View answer choices
  1. Configure workspaces, API keys, modules, and scope before collection.
  2. Minimize public leakage and review graph results for source quality and authorization.
  3. Harden the API, RBAC, admission, secrets, network policies, and workload identity.
  4. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
Practice
4711
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During an authorized retail-company assessment (RET-LAB-M19-4711), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. A relationship graph retaining sources and transformation history.
  2. Workspace data showing module, source, timestamp, and scoped target.
  3. Search results validated against the organization’s current external inventory.
  4. Audit events and manifests showing the identity, request, policy, and resulting object state.
Practice
4712
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a hospital incident-response exercise (HLT-SOC-M19-4712), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Audit events and manifests showing the identity, request, policy, and resulting object state.
  2. Workspace data showing module, source, timestamp, and scoped target.
  3. Search results validated against the organization’s current external inventory.
  4. A relationship graph retaining sources and transformation history.
Practice
4713
Module 19 · Foundation Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a university cyber-range engagement (EDU-RANGE-M19-4713), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. A relationship graph retaining sources and transformation history.
  2. Search results validated against the organization’s current external inventory.
  3. Audit events and manifests showing the identity, request, policy, and resulting object state.
  4. Workspace data showing module, source, timestamp, and scoped target.
Practice
4714
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a financial-services purple-team test (FIN-PT-M19-4714), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Workspace data showing module, source, timestamp, and scoped target.
  2. A relationship graph retaining sources and transformation history.
  3. Audit events and manifests showing the identity, request, policy, and resulting object state.
  4. Search results validated against the organization’s current external inventory.
Practice
4715
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a cloud startup security audit (CLD-AUDIT-M19-4715), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. A relationship graph retaining sources and transformation history.
  2. Workspace data showing module, source, timestamp, and scoped target.
  3. Search results validated against the organization’s current external inventory.
  4. Audit events and manifests showing the identity, request, policy, and resulting object state.
Practice
4716
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a government risk-validation project (GOV-RISK-M19-4716), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Audit events and manifests showing the identity, request, policy, and resulting object state.
  2. Search results validated against the organization’s current external inventory.
  3. Workspace data showing module, source, timestamp, and scoped target.
  4. A relationship graph retaining sources and transformation history.
Practice
4717
Module 19 · Applied Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During an e-commerce application review (ECOM-WEB-M19-4717), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Search results validated against the organization’s current external inventory.
  2. Audit events and manifests showing the identity, request, policy, and resulting object state.
  3. A relationship graph retaining sources and transformation history.
  4. Workspace data showing module, source, timestamp, and scoped target.
Practice
4718
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a manufacturing and OT security review (MFG-OT-M19-4718), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Audit events and manifests showing the identity, request, policy, and resulting object state.
  2. A relationship graph retaining sources and transformation history.
  3. Workspace data showing module, source, timestamp, and scoped target.
  4. Search results validated against the organization’s current external inventory.
Practice
4719
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a mobile-services penetration test (MOB-TEST-M19-4719), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Workspace data showing module, source, timestamp, and scoped target.
  2. Search results validated against the organization’s current external inventory.
  3. A relationship graph retaining sources and transformation history.
  4. Audit events and manifests showing the identity, request, policy, and resulting object state.
Practice
4720
Module 19 · Advanced Domain 4 · Tools / Systems / Programs Kubernetes Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M19-4720), which evidence best supports an assessment of "Kubernetes"?

View answer choices
  1. Audit events and manifests showing the identity, request, policy, and resulting object state.
  2. Search results validated against the organization’s current external inventory.
  3. Workspace data showing module, source, timestamp, and scoped target.
  4. A relationship graph retaining sources and transformation history.
Practice
4721
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an authorized retail-company assessment (RET-LAB-M19-4721), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. Provider-generated records of identity, API, configuration, and resource activity.
  3. A search service that indexes Internet-connected devices and service banners.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
4722
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a hospital incident-response exercise (HLT-SOC-M19-4722), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. Provider-generated records of identity, API, configuration, and resource activity.
  2. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
4723
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a university cyber-range engagement (EDU-RANGE-M19-4723), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. Provider-generated records of identity, API, configuration, and resource activity.
Practice
4724
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a financial-services purple-team test (FIN-PT-M19-4724), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. Provider-generated records of identity, API, configuration, and resource activity.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
4725
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a cloud startup security audit (CLD-AUDIT-M19-4725), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. Provider-generated records of identity, API, configuration, and resource activity.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
4726
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a government risk-validation project (GOV-RISK-M19-4726), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. Provider-generated records of identity, API, configuration, and resource activity.
  2. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. A search service that indexes Internet-connected devices and service banners.
Practice
4727
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an e-commerce application review (ECOM-WEB-M19-4727), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. Provider-generated records of identity, API, configuration, and resource activity.
Practice
4728
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a manufacturing and OT security review (MFG-OT-M19-4728), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A modular reconnaissance framework used to organize authorized OSINT collection.
  2. A search service that indexes Internet-connected devices and service banners.
  3. Provider-generated records of identity, API, configuration, and resource activity.
  4. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
Practice
4729
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a mobile-services penetration test (MOB-TEST-M19-4729), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A search service that indexes Internet-connected devices and service banners.
  2. Provider-generated records of identity, API, configuration, and resource activity.
  3. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  4. A modular reconnaissance framework used to organize authorized OSINT collection.
Practice
4730
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M19-4730), which statement most accurately defines "cloud audit logging"?

View answer choices
  1. A link-analysis platform for visualizing relationships among people, domains, organizations, and infrastructure.
  2. A search service that indexes Internet-connected devices and service banners.
  3. A modular reconnaissance framework used to organize authorized OSINT collection.
  4. Provider-generated records of identity, API, configuration, and resource activity.
Practice
4731
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an authorized retail-company assessment (RET-LAB-M19-4731), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  2. Automated modules can query third parties or collect data outside scope.
  3. Combining public data can expose relationships that were not obvious individually.
  4. Exposed management services and old banners make vulnerable assets easy to discover.
Practice
4732
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a hospital incident-response exercise (HLT-SOC-M19-4732), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Exposed management services and old banners make vulnerable assets easy to discover.
  2. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  3. Combining public data can expose relationships that were not obvious individually.
  4. Automated modules can query third parties or collect data outside scope.
Practice
4733
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a university cyber-range engagement (EDU-RANGE-M19-4733), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Automated modules can query third parties or collect data outside scope.
  2. Exposed management services and old banners make vulnerable assets easy to discover.
  3. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  4. Combining public data can expose relationships that were not obvious individually.
Practice
4734
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a financial-services purple-team test (FIN-PT-M19-4734), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Combining public data can expose relationships that were not obvious individually.
  2. Exposed management services and old banners make vulnerable assets easy to discover.
  3. Automated modules can query third parties or collect data outside scope.
  4. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
Practice
4735
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a cloud startup security audit (CLD-AUDIT-M19-4735), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Automated modules can query third parties or collect data outside scope.
  2. Combining public data can expose relationships that were not obvious individually.
  3. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  4. Exposed management services and old banners make vulnerable assets easy to discover.
Practice
4736
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a government risk-validation project (GOV-RISK-M19-4736), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Combining public data can expose relationships that were not obvious individually.
  2. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  3. Exposed management services and old banners make vulnerable assets easy to discover.
  4. Automated modules can query third parties or collect data outside scope.
Practice
4737
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an e-commerce application review (ECOM-WEB-M19-4737), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Automated modules can query third parties or collect data outside scope.
  2. Exposed management services and old banners make vulnerable assets easy to discover.
  3. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  4. Combining public data can expose relationships that were not obvious individually.
Practice
4738
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a manufacturing and OT security review (MFG-OT-M19-4738), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Combining public data can expose relationships that were not obvious individually.
  2. Automated modules can query third parties or collect data outside scope.
  3. Exposed management services and old banners make vulnerable assets easy to discover.
  4. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
Practice
4739
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a mobile-services penetration test (MOB-TEST-M19-4739), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Automated modules can query third parties or collect data outside scope.
  2. Combining public data can expose relationships that were not obvious individually.
  3. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  4. Exposed management services and old banners make vulnerable assets easy to discover.
Practice
4740
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M19-4740), which risk is most directly associated with "cloud audit logging"?

View answer choices
  1. Automated modules can query third parties or collect data outside scope.
  2. Exposed management services and old banners make vulnerable assets easy to discover.
  3. Disabled or incomplete logging prevents attribution and delays detection of cloud misuse.
  4. Combining public data can expose relationships that were not obvious individually.
Practice
4741
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an authorized retail-company assessment (RET-LAB-M19-4741), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Minimize public leakage and review graph results for source quality and authorization.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  4. Configure workspaces, API keys, modules, and scope before collection.
Practice
4742
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a hospital incident-response exercise (HLT-SOC-M19-4742), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Configure workspaces, API keys, modules, and scope before collection.
  2. Minimize public leakage and review graph results for source quality and authorization.
  3. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  4. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
Practice
4743
Module 19 · Foundation Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a university cyber-range engagement (EDU-RANGE-M19-4743), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Minimize public leakage and review graph results for source quality and authorization.
  2. Configure workspaces, API keys, modules, and scope before collection.
  3. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  4. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
Practice
4744
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a financial-services purple-team test (FIN-PT-M19-4744), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  2. Configure workspaces, API keys, modules, and scope before collection.
  3. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  4. Minimize public leakage and review graph results for source quality and authorization.
Practice
4745
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a cloud startup security audit (CLD-AUDIT-M19-4745), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  2. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  3. Minimize public leakage and review graph results for source quality and authorization.
  4. Configure workspaces, API keys, modules, and scope before collection.
Practice
4746
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a government risk-validation project (GOV-RISK-M19-4746), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Configure workspaces, API keys, modules, and scope before collection.
  2. Minimize public leakage and review graph results for source quality and authorization.
  3. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  4. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
Practice
4747
Module 19 · Applied Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During an e-commerce application review (ECOM-WEB-M19-4747), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Minimize public leakage and review graph results for source quality and authorization.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Configure workspaces, API keys, modules, and scope before collection.
  4. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
Practice
4748
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a manufacturing and OT security review (MFG-OT-M19-4748), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Configure workspaces, API keys, modules, and scope before collection.
  2. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  3. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  4. Minimize public leakage and review graph results for source quality and authorization.
Practice
4749
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a mobile-services penetration test (MOB-TEST-M19-4749), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  2. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
  3. Minimize public leakage and review graph results for source quality and authorization.
  4. Configure workspaces, API keys, modules, and scope before collection.
Practice
4750
Module 19 · Advanced Domain 4 · Tools / Systems / Programs cloud audit logging Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M19-4750), which action most directly controls the risk related to "cloud audit logging"?

View answer choices
  1. Minimize public leakage and review graph results for source quality and authorization.
  2. Configure workspaces, API keys, modules, and scope before collection.
  3. Maintain external asset inventory and restrict or remove unnecessary Internet exposure.
  4. Enable organization-wide immutable logs and alert on high-risk control-plane actions.
Practice