Certified Incident Handler (CIH) Practice Ecam

Disable ads (and more) with a membership for a one time $2.99 payment

Prepare for the Certified Incident Handler (CIH) Exam. Enhance your knowledge with interactive quizzes and detailed insights into cyber incident handling. Boost your exam readiness with our expert-designed questions!

Each practice test/flash card set has 50 randomly selected questions from a bank of over 500. You'll get a new set of questions each time!

Practice this question and more.


What attack vector is represented by an insider using a malware-loaded USB device?

  1. Email

  2. Network Exploit

  3. Removable Media

  4. Phishing

The correct answer is: Removable Media

The attack vector represented by an insider using a malware-loaded USB device is classified as removable media. This involves the use of portable storage devices, such as USB flash drives, that can be connected to computers to facilitate data transfer. When an insider introduces a compromised USB device into an organization’s network, they may unknowingly or maliciously infect systems with malware. Removable media attacks capitalize on the physical access an insider has to the organization's infrastructure, bypassing network-based defenses. Such attacks are compelling because they often exploit the trust placed in physical devices. Unlike other attack vectors, like email or phishing, which involve social engineering and remote exploitation, removable media attacks are direct and can quickly spread malware once the device is connected to a system. This type of attack underscores the importance of security policies regarding the use of removable media in order to mitigate the risks associated with unauthorized devices connecting to the network.