
Latest ECSSv9 Study Guides 2023 - With Test Engine PDF
Get New ECSSv9 Practice Test Questions Answers
NEW QUESTION # 26
The type of intrusion detection system that places detection at the device is:
- A. KIDS
- B. HIDS
- C. NIDS
- D. TIDS
Answer: B
Explanation:
Explanation: The type of intrusion detection system that places detection at the device is HIDS. NIDS places them at strategic points, and KIDS and TIDS are bogus.
NEW QUESTION # 27
Bluesnarfing requires which of these?
- A. Authentication by the target
- B. Wifi access
- C. The BD_ADDR identifier
- D. Device passcode
Answer: C
Explanation:
Explanation: For Bluesnarfing, the BD_ADDR is needed. This can be obtained by a brute-force attack, but there are 8.4 Million possible combinations.
NEW QUESTION # 28
Which organisation created the suggested standard for communications that describes how data is sent and received over a network?
- A. International Organisation for Standardisation (ISO)
- B. World Wide Web Consortium (W3C)
- C. American Communication Consortium (ACC)
- D. Federal Communications Commission (FCC)
Answer: A
Explanation:
Explanation: The OSI model is a suggested standard for communication that was developed by the International Organisation for Standardisation (ISO). It describes how data is sent and received over a network and breaks down data transmission over a series of seven layers.
NEW QUESTION # 29
If your employer could view your medical records without your permission, what principle of information security would be violated?
- A. Repudiation
- B. Integrity
- C. Availability
- D. Confidentiality
Answer: D
Explanation:
Explanation: Confidentiality would no longer be assured. The information would still be available to you, and would still be accurate (integrity), but it would also be available to others without your permission or knowledge.
NEW QUESTION # 30
Evidence is said to be reliable when _____
- A. it remains unchanged prior to or after collection.
- B. data is similar to the original.
- C. it is presented by more than one witness.
- D. its chain of custody is not monitored.
Answer: A
NEW QUESTION # 31
Which hacker seeks to steal money, hold computers and network systems for ransom and possibly destroy computer systems?
- A. The black hat
- B. The white hat
- C. The grey hat
- D. The evil hacker
Answer: A
NEW QUESTION # 32
Which of the following distributions is no longer available?
- A. Debian
- B. Red Hat
- C. CentOS
- D. Fedora
Answer: B
Explanation:
Explanation: Red Hat was discontinued in 2003, although its Enterprise distribution remains active.
NEW QUESTION # 33
Which of these is not one of TCP/IP's five protocol layers?
- A. Application/process layer
- B. Transmission
- C. Network interface layer
- D. Physical layer
Answer: B
Explanation:
Explanation: The five layers of TCP/IP are the physical, network interface, protocol, transport and application/ process layers.
NEW QUESTION # 34
Which of these is NOT Bluejacking?
- A. Harmless irritant
- B. Unsolicited
- C. Controlling a target device
- D. Message sending
Answer: C
Explanation:
Explanation: Bluejacking is an annoyance or irritation done with a harmless intent by sending an unrequested message, similar to ringing a doorbell and running away.
NEW QUESTION # 35
What is a VPN?
- A. A network that is only accessible with the correct credentials
- B. An unencrypted network
- C. A network accessible through the Internet without credentials
- D. A protocol that has no encryption
Answer: C
NEW QUESTION # 36
Copies of originals of digital evidence are used as best evidence to ensure _____.
- A. photocopiers, scanners and other replicating devices are properly utilised.
- B. there is no misrepresentation or damage to the original evidence.
- C. every member of the courtroom has a copy of the evidence.
- D. the original evidence is kept hidden from the culprit.
Answer: B
NEW QUESTION # 37
Which term is used to describe initial communication between two Bluetooth devices?
- A. Binding
- B. Matching
- C. Pairing
- D. Twinning
Answer: C
Explanation:
Explanation: Bluetooth connections are initiated by pairing two devices, and after an acceptance procedure they communicate.
NEW QUESTION # 38
If a website requires you to log in with a password to change your address, this is an example of that website observing what principles of information security?
- A. Confidentiality and Availability
- B. Integrity and Confidentiality
- C. Availability and Integrity
- D. Availability, Integrity, and Confidentiality
Answer: D
Explanation:
Explanation: If someone you don't know changes the address on your bank statement, that statement will be delivered to the wrong address. Confidentiality will be compromised because someone other than you will receive the statement. The information on that statement will no longer be available to the rightful owner (you), and the integrity of your information has been violated since your bank now has an address that is not yours.
NEW QUESTION # 39
Information security must _____, and protect against all threats.
- A. Recognize
- B. All of these answers are correct
- C. Delete
- D. Count
Answer: A
Explanation:
Explanation: Information security must recognize, and protect against, all threats. Counting and deleting are not a must with respect to information security threats.
NEW QUESTION # 40
Which layer provides the physical connection between the computer and network?
- A. Session layer
- B. Physical layer
- C. Transport layer
- D. Network layer
Answer: B
Explanation:
Explanation: The physical layer is concerned with hardware and provides the physical connection between the computer and network. The physical components may include servers, clients and circuits.
NEW QUESTION # 41
What is cryptography?
- A. Cryptography is the process of encrypting data in transmission or in storage preventing unauthorised access or snooping
- B. Cryptography is the process of authenticating software encoding in transmission for user access to be permitted
- C. Cryptography is the process of authenticating data in transmission or in storage before user access is permitted
- D. Cryptography is the process of encrypting data keys in transmission or in storage preventing unauthorised key decryption on receipt
Answer: A
Explanation:
Explanation: Cryptography is defined as the system by which data and information of value are stored or transmitted in such a way that only those for whom it is intended can read, interpret or process it.
NEW QUESTION # 42
Class 2 Bluetooth devices have an expected range of _____ ?
- A. 30 metres
- B. 10 feet
- C. 100 metres
- D. 10 metres
Answer: D
Explanation:
Explanation: Bluetooth devices in class 2, which is typically used for phones and computers, generally have a range of up to 10 metres or 30 feet.
NEW QUESTION # 43
What are two famous black hat 'hacktivist' groups?
- A. Anonymous and LulzSec
- B. Kelvin Mitnick and Edward Snowden
- C. WannaCry and Doomjuice
- D. Trojan Horse and DNS P0is0n
Answer: A
NEW QUESTION # 44
A Bluetooth device's unique address is _____?
- A. BD_MAC
- B. BD_ADD
- C. BD_ID
- D. BD_ADDR
Answer: D
Explanation:
Explanation: Bluetooth devices transmit an unique identifier BD_ADDR, similar to a MAC Address.
NEW QUESTION # 45
Which data storage technology stores data temporarily, not permanently, for use by a device?
- A. CD
- B. Random Access Memory (RAM)
- C. DVD
- D. Hard disk drive
Answer: B
Explanation:
Explanation: Random Access Memory (RAM), also known simply as memory or computer memory is what computers use to hold information temporarily so it can be easily accessed by the computer as you work.
NEW QUESTION # 46
What are some of the tunnelling protocols that VPNs use?
- A. Blowfish and Twofish
- B. IPsec and L2TP
- C. AES and MD5
- D. HTTP and FTP
Answer: B
Explanation:
Explanation: VPNs use tunnelling protocols such as Point-To-Point Tunnelling Protocol (PPTP), Layer 2 Tunnelling Protocol (L2TP), Secure Socket Layer (SSL) and IP Security (IPsec).
NEW QUESTION # 47
......
The ECSS certification exam is designed to test the candidates' knowledge of fundamental security concepts, principles, and practices. The exam covers a wide range of topics such as network security, information security, computer forensics, and ethical hacking. The exam is a multiple-choice format, and candidates need to answer 50 questions in 2 hours. The pass mark for the exam is 70%.
ECSSv9 Dumps and Exam Test Engine: https://www.lead2passexam.com/ECCouncil/valid-ECSSv9-exam-dumps.html
ECCouncil ECSSv9 DUMPS WITH REAL EXAM QUESTIONS: https://drive.google.com/open?id=1Yr-Be4gj81uvfXUHyFDHRbtRnZ9Gwhwn