EC1350 Ethical Hacking and Countermeasures V7 Free Practice Test — 30 Questions

30 questions · Full explanations · No account required

Free
Question 1 of 30

During a penetration testing engagement for a financial services firm, your team discovers a critical zero-day vulnerability in an authentication module that was explicitly excluded from the original Statement of Work (SOW). This vulnerability, if exploited, could grant unauthorized access to sensitive customer data, significantly impacting the firm\'s regulatory compliance under frameworks like GDPR and CCPA, and potentially leading to severe reputational damage. The client has emphasized a strict adherence to the SOW due to budget constraints and an upcoming audit. What is the most ethically sound and strategically effective course of action for the ethical hacking team?

Immediately notify the client of the discovered vulnerability, explain its potential impact beyond the agreed scope, and propose a formal scope amendment to address it, emphasizing the regulatory and reputational risks.
Continue with the original SOW, documenting the discovered vulnerability internally but refraining from immediate disclosure to the client to avoid scope creep and budget overruns, and suggest a separate engagement for the new finding.
Attempt to remediate the vulnerability themselves without client consent or notification, believing it aligns with the spirit of securing the client's environment, and then document the intervention in the final report.
Focus solely on the vulnerabilities within the agreed scope, and upon completion, provide a general recommendation for the client to conduct a comprehensive security audit of all system components, including those outside the initial engagement.

About the EC1350 Ethical Hacking and Countermeasures V7 Certification

These free practice questions are designed to help you assess your readiness for the EC1350 Ethical Hacking and Countermeasures V7 exam by Other. Each question comes with a detailed explanation to reinforce the correct concept. For a complete exam preparation experience with hundreds of questions, spaced-repetition study tools, and full exam simulations, explore our premium access.