CEH v13 · 20 official modules

All 5,000 CEH questions.

Search original practice content, filter by EC-Council module or exam domain, and open any question in revision mode.

0 answered overall

Showing 2,751–2,800 of 5,000 matching questions

50 per page
2751
Module 7 · Foundation Domain 3 · Security endpoint detection and response Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2751), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2752
Module 7 · Foundation Domain 3 · Security endpoint detection and response Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2752), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2753
Module 7 · Foundation Domain 3 · Security endpoint detection and response Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2753), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. An architecture map showing which independent controls interrupt each attack path.
  4. A process tree and endpoint timeline linking execution, persistence, files, and connections.
Practice
2754
Module 7 · Applied Domain 3 · Security endpoint detection and response Unanswered

During a financial-services purple-team test (FIN-PT-M07-2754), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2755
Module 7 · Applied Domain 3 · Security endpoint detection and response Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2755), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2756
Module 7 · Applied Domain 3 · Security endpoint detection and response Unanswered

During a government risk-validation project (GOV-RISK-M07-2756), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2757
Module 7 · Applied Domain 3 · Security endpoint detection and response Unanswered

During an e-commerce application review (ECOM-WEB-M07-2757), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A risk register with likelihood, impact, owner, treatment, and review date.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A process tree and endpoint timeline linking execution, persistence, files, and connections.
Practice
2758
Module 7 · Advanced Domain 3 · Security endpoint detection and response Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2758), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  2. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. An architecture map showing which independent controls interrupt each attack path.
Practice
2759
Module 7 · Advanced Domain 3 · Security endpoint detection and response Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2759), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. An architecture map showing which independent controls interrupt each attack path.
  2. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  3. A risk register with likelihood, impact, owner, treatment, and review date.
  4. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
Practice
2760
Module 7 · Advanced Domain 3 · Security endpoint detection and response Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2760), which evidence best supports an assessment of "endpoint detection and response"?

View answer choices
  1. A process tree and endpoint timeline linking execution, persistence, files, and connections.
  2. An architecture map showing which independent controls interrupt each attack path.
  3. A timeline linking alerts, decisions, evidence, containment, and recovery actions.
  4. A risk register with likelihood, impact, owner, treatment, and review date.
Practice
2761
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2761), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Using AI output as a replacement for authentication.
  2. Publishing private prompts as an availability control.
  3. Executing model output automatically with maximum privileges.
  4. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
Practice
2762
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2762), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  2. Using AI output as a replacement for authentication.
  3. Publishing private prompts as an availability control.
  4. Executing model output automatically with maximum privileges.
Practice
2763
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2763), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Executing model output automatically with maximum privileges.
  2. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  3. Publishing private prompts as an availability control.
  4. Using AI output as a replacement for authentication.
Practice
2764
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a financial-services purple-team test (FIN-PT-M07-2764), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Using AI output as a replacement for authentication.
  2. Executing model output automatically with maximum privileges.
  3. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  4. Publishing private prompts as an availability control.
Practice
2765
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2765), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Using AI output as a replacement for authentication.
  2. Publishing private prompts as an availability control.
  3. Executing model output automatically with maximum privileges.
  4. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
Practice
2766
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a government risk-validation project (GOV-RISK-M07-2766), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  2. Publishing private prompts as an availability control.
  3. Using AI output as a replacement for authentication.
  4. Executing model output automatically with maximum privileges.
Practice
2767
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During an e-commerce application review (ECOM-WEB-M07-2767), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Executing model output automatically with maximum privileges.
  2. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  3. Publishing private prompts as an availability control.
  4. Using AI output as a replacement for authentication.
Practice
2768
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2768), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  2. Executing model output automatically with maximum privileges.
  3. Using AI output as a replacement for authentication.
  4. Publishing private prompts as an availability control.
Practice
2769
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2769), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Executing model output automatically with maximum privileges.
  2. Using AI output as a replacement for authentication.
  3. Publishing private prompts as an availability control.
  4. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
Practice
2770
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2770), which statement most accurately defines "secure AI output handling"?

View answer choices
  1. Executing model output automatically with maximum privileges.
  2. Treating model output as untrusted data that must be validated and safely encoded before downstream use.
  3. Publishing private prompts as an availability control.
  4. Using AI output as a replacement for authentication.
Practice
2771
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2771), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Output can never contain attacker-controlled text.
  2. Connected tools always enforce least privilege automatically.
  3. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  4. Model output is cryptographically correct by default.
Practice
2772
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2772), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Model output is cryptographically correct by default.
  2. Connected tools always enforce least privilege automatically.
  3. Output can never contain attacker-controlled text.
  4. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
Practice
2773
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2773), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  2. Output can never contain attacker-controlled text.
  3. Model output is cryptographically correct by default.
  4. Connected tools always enforce least privilege automatically.
Practice
2774
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a financial-services purple-team test (FIN-PT-M07-2774), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Connected tools always enforce least privilege automatically.
  2. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  3. Model output is cryptographically correct by default.
  4. Output can never contain attacker-controlled text.
Practice
2775
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2775), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  2. Connected tools always enforce least privilege automatically.
  3. Output can never contain attacker-controlled text.
  4. Model output is cryptographically correct by default.
Practice
2776
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a government risk-validation project (GOV-RISK-M07-2776), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Output can never contain attacker-controlled text.
  2. Connected tools always enforce least privilege automatically.
  3. Model output is cryptographically correct by default.
  4. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
Practice
2777
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During an e-commerce application review (ECOM-WEB-M07-2777), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  2. Model output is cryptographically correct by default.
  3. Output can never contain attacker-controlled text.
  4. Connected tools always enforce least privilege automatically.
Practice
2778
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2778), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Model output is cryptographically correct by default.
  2. Connected tools always enforce least privilege automatically.
  3. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  4. Output can never contain attacker-controlled text.
Practice
2779
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2779), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
  2. Connected tools always enforce least privilege automatically.
  3. Output can never contain attacker-controlled text.
  4. Model output is cryptographically correct by default.
Practice
2780
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2780), which risk is most directly associated with "secure AI output handling"?

View answer choices
  1. Model output is cryptographically correct by default.
  2. Connected tools always enforce least privilege automatically.
  3. Output can never contain attacker-controlled text.
  4. Unsafe model output can trigger injection, data leakage, incorrect decisions, or unintended tool actions.
Practice
2781
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2781), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  2. Pass output directly to a shell without parsing.
  3. Give the model unrestricted production access.
  4. Disable content and action logging.
Practice
2782
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2782), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Pass output directly to a shell without parsing.
  2. Disable content and action logging.
  3. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  4. Give the model unrestricted production access.
Practice
2783
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2783), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  2. Give the model unrestricted production access.
  3. Disable content and action logging.
  4. Pass output directly to a shell without parsing.
Practice
2784
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a financial-services purple-team test (FIN-PT-M07-2784), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Give the model unrestricted production access.
  2. Disable content and action logging.
  3. Pass output directly to a shell without parsing.
  4. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
Practice
2785
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2785), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  2. Give the model unrestricted production access.
  3. Pass output directly to a shell without parsing.
  4. Disable content and action logging.
Practice
2786
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a government risk-validation project (GOV-RISK-M07-2786), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Pass output directly to a shell without parsing.
  2. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  3. Disable content and action logging.
  4. Give the model unrestricted production access.
Practice
2787
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During an e-commerce application review (ECOM-WEB-M07-2787), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Give the model unrestricted production access.
  2. Disable content and action logging.
  3. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  4. Pass output directly to a shell without parsing.
Practice
2788
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2788), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Give the model unrestricted production access.
  2. Disable content and action logging.
  3. Pass output directly to a shell without parsing.
  4. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
Practice
2789
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2789), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  2. Pass output directly to a shell without parsing.
  3. Give the model unrestricted production access.
  4. Disable content and action logging.
Practice
2790
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2790), which action most directly controls the risk related to "secure AI output handling"?

View answer choices
  1. Give the model unrestricted production access.
  2. Disable content and action logging.
  3. Validate structure and intent, encode for the destination, restrict connected tools, and require approval for high-impact operations.
  4. Pass output directly to a shell without parsing.
Practice
2791
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During an authorized retail-company assessment (RET-LAB-M07-2791), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  3. A generic processor-usage graph.
  4. A DNS response unrelated to the AI workflow.
Practice
2792
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a hospital incident-response exercise (HLT-SOC-M07-2792), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. A DNS response unrelated to the AI workflow.
  2. Only the model version number.
  3. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  4. A generic processor-usage graph.
Practice
2793
Module 1 · Foundation Domain 3 · Security secure AI output handling Unanswered

During a university cyber-range engagement (EDU-RANGE-M07-2793), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. A generic processor-usage graph.
  3. A DNS response unrelated to the AI workflow.
  4. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
Practice
2794
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a financial-services purple-team test (FIN-PT-M07-2794), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  2. A DNS response unrelated to the AI workflow.
  3. A generic processor-usage graph.
  4. Only the model version number.
Practice
2795
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a cloud startup security audit (CLD-AUDIT-M07-2795), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. A generic processor-usage graph.
  3. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  4. A DNS response unrelated to the AI workflow.
Practice
2796
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During a government risk-validation project (GOV-RISK-M07-2796), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  2. A DNS response unrelated to the AI workflow.
  3. Only the model version number.
  4. A generic processor-usage graph.
Practice
2797
Module 1 · Applied Domain 3 · Security secure AI output handling Unanswered

During an e-commerce application review (ECOM-WEB-M07-2797), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. A generic processor-usage graph.
  3. A DNS response unrelated to the AI workflow.
  4. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
Practice
2798
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a manufacturing and OT security review (MFG-OT-M07-2798), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  2. A generic processor-usage graph.
  3. A DNS response unrelated to the AI workflow.
  4. Only the model version number.
Practice
2799
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a mobile-services penetration test (MOB-TEST-M07-2799), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. A generic processor-usage graph.
  3. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  4. A DNS response unrelated to the AI workflow.
Practice
2800
Module 1 · Advanced Domain 3 · Security secure AI output handling Unanswered

During a global-enterprise mock CEH scenario (ENT-MOCK-M07-2800), which evidence best supports an assessment of "secure AI output handling"?

View answer choices
  1. Only the model version number.
  2. Validation logs showing raw output, rejected content, approved transformation, and the bounded downstream action.
  3. A generic processor-usage graph.
  4. A DNS response unrelated to the AI workflow.
Practice