Official Bank 0/100

EC-Council Certified Security Specialist Practice Test (ECSS) - EC-Council Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
100 Total Questions
1
Question
Kevin, a forensic investigator at FinCorp Ltd., was investigating a cybercrime against the company. As part of the investigation process, he needs to recover corrupted and deleted files from a Windows system. Kevin decided to use an automated tool to recover the damaged, corrupted, or deleted files.

Which of the following forensic tools can help Kevin in recovering deleted files?
Options
A Rohos Mini Drive
B Ophcrack
C R-Sludio
D Cain & Abel
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
In which of the following levels of the OSI model does an attacker gain control over the HTTP user session by obtaining the session IDs and create new unauthorized sessions by using the stolen data?
Options
A Transport level
B Application-level
C Network-level
D Presentation level
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Kalley, a network administrator of an organization, has installed a traffic monitoring system to capture and report suspicious traffic signatures. In this process, she detects traffic containing password cracking, sniffing, and brute-forcing attempts.

Which of the following categories of suspicious traffic signature were identified by Kalley through the installed monitoring system?
Options
A Reconnaissance signatures
B Denial of service (DoS) signatures
C Unauthorized access signatures
D Informational signatures
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
Which of the following cloud computing threats arises from authentication vulnerabilities, user- provisioning and de-provisioning vulnerabilities, hypervisor vulnerabilities, unclear roles and responsibilities, and misconfigurations?
Options
A Supply-chain failure
B Privilege escalation
C Isolation failure
D Subpoena and e discovery
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
Robert, a security specialist, was appointed to strengthen the security of the organization's network. To prevent multiple login attempts from unknown sources, Robert implemented a security strategy of issuing alerts or warning messages when multiple failed login attempts are made.

Which of the following security risks is addressed by Robert to make attempted break-ins unsuccessful?
Options
A Indefinite session timeout
B Weak session-ID generation
C Small session-ID generation
D Absence of account lockout for invalid session IDs
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.