EC-Council ICS/SCADA Cyber Security ICS-SCADA Dumps in PDF

Free EC-Council ICS-SCADA Real Questions (page: 9)

In what default directory (fully qualified path) does nmap store scripts?

  1. /usr/share/scripts
  2. /ust/share/nmap/scripts
  3. /usr/share/nmap
  4. /opt

Answer(s): C

Explanation:

Nmap (Network Mapper) is a network scanning and security auditing tool. Scripts used by Nmap for performing different network discovery and security auditing tasks are stored in /usr/share/nmap/scripts. This directory contains a collection of scripts for NSE (Nmap Scripting Engine), which enables Nmap to perform additional networking tasks, often used for detecting vulnerabilities, misconfigurations, and security-related information about network services.


Reference:

Nmap documentation, "Nmap Scripting Engine (NSE)".



Which of the registrars contains the information for the domain owners in South America?

  1. AFRINIC
  2. ARIN
  3. LACNIC
  4. RIPENCC

Answer(s): C

Explanation:

LACNIC (Latin American and Caribbean Network Information Centre) is the regional Internet registry for Latin America and parts of the Caribbean. It manages the allocation and registration of Internet number resources (such as IP addresses and AS numbers) within this region and maintains the registry of domain owners in South America.


Reference:

LACNIC official website, "About LACNIC".



Which of the hacking methodology steps can be used to identify the applications and vendors used?

  1. Enumeration
  2. OSINT
  3. Scanning
  4. Surveillance

Answer(s): B

Explanation:

OSINT (Open Source Intelligence) refers to the collection and analysis of information gathered from public, freely available sources to be used in an intelligence context. In the context of hacking methodologies, OSINT can be used to identify applications and vendors employed by a target organization by analyzing publicly available data such as websites, code repositories, social media, and other internet-facing resources.


Reference:

Michael Bazzell, "Open Source Intelligence Techniques".



Which of the following is a component of an IDS?

  1. All of these
  2. Respond
  3. Detect
  4. Monitor

Answer(s): A

Explanation:

An Intrusion Detection System (IDS) is designed to monitor network or system activities for malicious activities or policy violations and can perform several functions:
Monitor: Observing network traffic and system activities for unusual or suspicious behavior. Detect: Identifying potential security breaches including both known threats and unusual activities that could indicate new threats.
Respond: Executing pre-defined actions to address detected threats, which can include alerts or triggering automatic countermeasures.


Reference:

Cisco Systems, "Intrusion Detection Systems".



Which of the IEC 62443 Security Levels is identified by a cybercrime/hacker target?

  1. 4
  2. 3
  3. 1
  4. 2

Answer(s): B

Explanation:

IEC 62443 is an international series of standards on Industrial communication networks and system security, specifically related to Industrial Automation and Control Systems (IACS). Within the IEC 62443 standards, Security Level 3 is defined as protection against deliberate or specialized intrusion. It is designed to safeguard against threats from skilled attackers (cybercriminals or hackers) targeting specific processes or operations within the industrial control system.


Reference:

International Electrotechnical Commission, "IEC 62443 Standards".



Share your comments for EC-Council ICS-SCADA exam with other users:

P
Puneeth
10/5/2023 2:06:00 AM

new to this site but i feel it is good

A
Ashok Kumar
1/2/2024 6:53:00 AM

the correct answer to q8 is b. explanation since the mule app has a dependency, it is necessary to include project modules and dependencies to make sure the app will run successfully on the runtime on any other machine. source code of the component that the mule app is dependent of does not need to be included in the exported jar file, because the source code is not being used while executing an app. compiled code is being used instead.

M
Merry
7/30/2023 6:57:00 AM

good questions

V
VoiceofMidnight
12/17/2023 4:07:00 PM

Delayed the exam until December 29th.

U
Umar Ali
8/29/2023 2:59:00 PM

A and D are True

V
vel
8/28/2023 9:17:09 AM

good one with explanation

G
Gurdeep
1/18/2024 4:00:15 PM

This is one of the most useful study guides I have ever used.

AI Tutor 👋 I’m here to help!