31250v12 Certified Ethical Hacker v12 Exam Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

During a comprehensive penetration test of a financial institution\'s core banking system, a security consultant uncovers a novel, zero-day exploit that, if leveraged, could grant unauthorized access to sensitive customer financial data, potentially leading to significant data breaches and regulatory non-compliance under frameworks like GDPR. The exploit requires a specific, albeit achievable, sequence of network interactions. The consultant\'s contract explicitly prohibits unauthorized disclosure of findings to any third party without prior written consent from the client, but also mandates reporting of critical vulnerabilities that pose an immediate threat to data integrity and confidentiality. The client\'s designated point of contact for technical security matters is currently on an extended leave, with limited remote access and no designated backup for urgent security escalations. Considering the gravity of the potential impact and the contractual obligations, what is the most ethically sound and professionally responsible course of action for the security consultant?

Immediately contact the client's primary point of contact via all available secure channels, clearly detailing the vulnerability, its potential impact, and proposing a joint strategy for immediate remediation, while simultaneously documenting all communication attempts.
Report the zero-day exploit directly to the relevant data protection authority or regulatory body, citing the potential for a significant data breach, and simultaneously inform the client of this action.
Document the vulnerability thoroughly, including proof-of-concept, and await the return of the designated client contact or the establishment of an interim escalation path before disclosing the findings.
Attempt to discretely trigger the exploit in a controlled manner to gather more definitive evidence of its impact, then present this advanced proof-of-concept to the client upon their return.

About the 31250v12 Certified Ethical Hacker v12 Exam Certification

These free practice questions are designed to help you assess your readiness for the 31250v12 Certified Ethical Hacker v12 Exam exam by Other. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.