Courseiva

CEH · topic practice

Wireless, IoT and Cloud Security practice questions

This CEH domain covers securing wireless networks, IoT/OT devices, and cloud environments across AWS, Azure, and hybrid setups. Questions present scenarios: analyzing iptables rules on Linux gateways, inspecting suspicious IoT traffic on segmented VLANs, reviewing AWS load balancer and security group configurations, and choosing containment or mitigation steps for compromised devices.

Courseiva uses original exam-style practice questions designed for learning and revision. The goal is to understand the concepts, recognise exam patterns, and improve through explanations — not memorise copied exam dumps.

Editorial oversight:Johnson Ajibi· MSc IT Security, IEEE Senior Member
20 questionsDomain: Wireless, IoT and Cloud Security

What the exam tests

What to know about Wireless, IoT and Cloud Security

Be able to read firewall and cloud configuration output, identify misconfigurations or malicious traffic, and pick the correct containment step. The single most important thing: match the mitigation to the layer involved—network segmentation, host firewall, or cloud IAM/security group—without destroying evidence.

Analyzing iptables rules on Linux gateway interfaces to determine permitted and blocked traffic

Segmenting IoT devices onto dedicated VLANs and monitoring for anomalous outbound connections

Reviewing AWS Application Load Balancer, security group, and VPC configurations for exposure

Applying cloud shared responsibility model and identity controls like IAM policies and MFA

Watch out for

Common Wireless, IoT and Cloud Security exam traps

  • ▸Reading iptables rules top-down but forgetting default policies, interface binding, or that NAT and stateful rules change effective behavior.
  • ▸Assuming cloud providers secure customer data by default; confusing provider-managed security of the cloud with customer security in the cloud.
  • ▸Isolating a suspicious IoT device by powering it off or blocking at the firewall when the question wants traffic capture and forensic investigation first.

Practice set

Wireless, IoT and Cloud Security questions

20 questions · select your answer, then reveal the explanation

Question 1mediummulti select
Read the full wireless explanation →

Which TWO of the following are effective countermeasures against rogue access point attacks on a corporate wireless network?

Question 2hardmulti select
Read the full wireless explanation →

Which THREE of the following are common security risks associated with cloud computing?

Question 3easymulti select
Read the full wireless explanation →

Which TWO of the following are characteristics of a Bluetooth Low Energy (BLE) IoT device that make it suitable for a battery-powered sensor?

Question 4easymultiple choice
Read the full wireless explanation →

Refer to the exhibit. A security analyst reviews a CloudTrail log entry. What is the primary security concern indicated by this log?

Exhibit

Refer to the exhibit.

```
CloudTrail Log:
{
  "eventVersion": "1.08",
  "userIdentity": {
    "type": "Root",
    "arn": "arn:aws:iam::123456789012:root",
    "accountId": "123456789012"
  },
  "eventTime": "2025-03-15T14:30:00Z",
  "eventSource": "ec2.amazonaws.com",
  "sourceIPAddress": "203.0.113.5",
  "userAgent": "console.amazonaws.com",
  "requestParameters": {
    "instanceType": "t2.micro",
    "imageId": "ami-0abcdef1234567890",
    "keyName": "test-key"
  },
  "responseElements": {
    "instancesSet": {
      "items": [
        {
          "instanceId": "i-0a1b2c3d4e5f67890"
        }
      ]
    }
  },
  "eventType": "AwsApiCall"
}
```
Question 5hardmultiple choice
Read the full wireless explanation →

During a penetration test, an ethical hacker captures a WPA2 handshake and successfully cracks the PSK. Which additional action must be taken to decrypt previously captured traffic?

Question 6mediummulti select
Read the full wireless explanation →

Which TWO of the following are common security risks associated with bring-your-own-device (BYOD) policies in a corporate environment?

Question 7mediummultiple choice
Read the full wireless explanation →

During a wireless penetration test, you identify a corporate network using WPA3-Enterprise with Simultaneous Authentication of Equals (SAE). You capture the initial SAE commit and confirm messages between a client and the access point. You attempt to perform an offline dictionary attack against the captured exchange, but it fails. Which of the following best explains why the attack was unsuccessful?

Question 8hardmulti select
Read the full wireless explanation →

A security engineer is assessing the security of a cloud deployment that uses AWS Lambda functions to process data from IoT devices. The engineer notices that the Lambda functions have overly permissive IAM roles that allow full access to S3 buckets and DynamoDB tables. Which TWO of the following actions should the engineer take to remediate the excessive permissions while maintaining functionality? (Choose two.)

Question 9easymultiple choice
Read the full DNS explanation →

A security analyst discovers that an IoT device in a smart building is periodically sending small DNS queries to an external domain known for command-and-control activity. Which security control should be implemented to detect and block such traffic without disrupting legitimate operations?

Question 10mediummultiple choice
Read the full wireless explanation →

A cloud security engineer notices that an S3 bucket containing sensitive customer data is configured with a bucket policy that allows 'Principal': '*' and 'Action': 's3:GetObject'. The bucket is not publicly accessible via the AWS Management Console, but the engineer is concerned about data exposure. What is the most likely risk?

Question 11hardmultiple choice
Read the full wireless explanation →

During a penetration test of a corporate wireless network, you capture a WPA2 handshake and successfully recover the PSK. Later, you notice that some clients are using WPA3-Personal. Which attack could be used to downgrade a WPA3 client to WPA2 and capture its handshake?

Question 12easymultiple choice
Read the full wireless explanation →

A company deploys IoT sensors in a remote facility with limited bandwidth. The sensors send small data packets every few seconds. Which wireless technology is most appropriate for this application?

Question 13mediummultiple choice
Read the full wireless explanation →

A security analyst detects multiple failed authentication attempts on a cloud-based SSH server from a single IP address. The analyst implements a rule to block that IP. However, the attacks continue from different IPs. Which additional control should be implemented to reduce the attack surface?

Question 14hardmultiple choice
Read the full wireless explanation →

During a wireless penetration test, you discover that the target network uses WPA2-Enterprise with PEAP-MSCHAPv2. You capture the authentication traffic of a legitimate user. Which attack can you perform to recover the user's domain credentials?

Question 15easymultiple choice
Read the full wireless explanation →

A company uses a cloud-based identity provider (IdP) for single sign-on (SSO). Which security control is most effective in preventing account takeover due to credential stuffing?

Question 16mediummultiple choice
Read the full wireless explanation →

An organization deploys a fleet of IoT cameras that communicate with a central server over the internet. The cameras use HTTP to send video streams. What is the most critical security improvement to protect the video data in transit?

Question 17mediummulti select
Read the full wireless explanation →

Which THREE of the following are best practices for securing IoT devices in a home automation network?

Question 18hardmultiple choice
Read the full wireless explanation →

Refer to the exhibit. During a wireless audit, you capture a beacon frame from a corporate access point. What is the most significant security concern based on this information?

Exhibit

Refer to the exhibit.

```
Wireless Capture: Beacon Frame
SSID: CorpNet
Security: WPA2-PSK
BSSID: 00:11:22:33:44:55
Channel: 6
RSN Information:
  Pairwise Ciphers: CCMP
  Group Cipher: TKIP
```
Question 19mediummultiple choice
Open the full VLAN trunking answer →

A security analyst notices unusual traffic from a smart thermostat to an external IP address. The thermostat is on a separate IoT VLAN. Which action should the analyst take to investigate and mitigate the threat?

Question 20easymultiple choice
Read the full wireless explanation →

A cloud security engineer wants to ensure that only authorized users can access an S3 bucket containing sensitive data. Which AWS service should be used to enforce fine-grained access control?

Free account

Track your progress over time

Create a free account to save your results and see which topics improve across sessions.

Focused Wireless, IoT and Cloud Security sessions

Start a Wireless, IoT and Cloud Security only practice session

Every question in these sessions is drawn from the Wireless, IoT and Cloud Security domain — nothing else.

Related practice questions

Related CEH topic practice pages

Move into related areas when this topic feels solid.

Scanning Networks and Enumeration practice questions

Scanning Networks and Enumeration practice questions for CEH.

Wireless, IoT and Cloud Security practice questions

Wireless, IoT and Cloud Security practice questions for CEH.

Vulnerability Analysis and System Hacking practice questions

Practise CEH questions linked to Vulnerability Analysis and System Hacking.

Advanced Topics: Wireless, Cloud, IoT, Cryptography practice questions

Sharpen your CEH knowledge of Advanced Topics: Wireless, Cloud, IoT, Cryptography.

Cryptography and Malware Analysis practice questions

Targeted CEH practice covering Cryptography and Malware Analysis.

Footprinting and Reconnaissance practice questions

Targeted CEH practice covering Footprinting and Reconnaissance.

Network and Web Application Attacks practice questions

Targeted CEH practice covering Network and Web Application Attacks.

Enumeration and System Hacking practice questions

Practise CEH questions linked to Enumeration and System Hacking.

Footprinting, Reconnaissance and Scanning practice questions

Sharpen your CEH knowledge of Footprinting, Reconnaissance and Scanning.

Social Engineering and Physical Security practice questions

Practise CEH questions linked to Social Engineering and Physical Security.

Malware, Social Engineering and Network Attacks practice questions

Sharpen your CEH knowledge of Malware, Social Engineering and Network Attacks.

Web Application and Injection Attacks practice questions

Sharpen your CEH knowledge of Web Application and Injection Attacks.

Frequently asked questions

What does the CEH exam test about Wireless, IoT and Cloud Security?
Be able to read firewall and cloud configuration output, identify misconfigurations or malicious traffic, and pick the correct containment step. The single most important thing: match the mitigation to the layer involved—network segmentation, host firewall, or cloud IAM/security group—without destroying evidence.
How should I use these practice questions?
Select your answer before revealing the explanation. Then read why each option is right or wrong — this active recall approach builds retention far faster than re-reading notes.
Can I practise just Wireless, IoT and Cloud Security questions in a focused session?
Yes — the session launcher on this page draws every question from the Wireless, IoT and Cloud Security domain. Use a 10-question session first to gauge your baseline, then move to 20 or 30 once the weak spots are clear.
Where can I practise other CEH topics?
Use the topic links above to move to related areas, or go back to the CEH question bank to see all topics.
Are these real exam questions or dumps?
These are original practice questions written to test the same concepts the CEH exam covers. They are not copied from any real exam or dump site.