312-50V11 Practice Questions
1,039 real 312-50V11 exam questions with expert-verified answers and explanations. Page 15 of 21.
- Question #702Vulnerability Analysis
To maintain compliance with regulatory requirements, a security audit of the systems on a network must be performed to determine their compliance with security policies. Which one...
vulnerability scannersecurity auditcompliancenetwork assessment - Question #703Social Engineering
You are tasked to perform a penetration test. While you are performing information gathering, you find an employee list in Google. You find the receptionist's email, and you send h...
email spoofingspear phishingmalware deliverysocial engineering - Question #704Footprinting and Reconnaissance
Your team has won a contract to infiltrate an organization. The company wants to have the attack be as realistic as possible; therefore, they did not provide any information beside...
penetration testing phasesreconnaissanceblack box testinginformation gathering - Question #705Information Security and Ethical Hacking Fundamentals
A medium-sized healthcare IT business decides to implement a risk management strategy. Which of the following is NOT one of the five basic responses to risk?
risk managementrisk responsesecurity governancerisk strategies - Question #707Malware Threats
Which of the following describes the characteristics of a Boot Sector Virus?
boot sector virusMBRvirus characteristicsmalware types - Question #708Information Security and Ethical Hacking Fundamentals
John is an incident handler at a financial institution. His steps in a recent incident are not up to the standards of the company. John frequently forgets some steps and procedures...
incident responseincident checklistincident handlingsecurity procedures - Question #709Information Security and Ethical Hacking Fundamentals
Which of the following is the least-likely physical characteristic to be used in biometric control that supports a large company?
biometric controlsphysical securityaccess controlauthentication - Question #710Hacking Web Applications
While using your bank's online servicing you notice the following string in the URL bar: account?id=368940911028389&Damount=10980&Camount=21" You observe that if you modify the Dam...
web parameter tamperingURL manipulationinput validationweb application vulnerabilities - Question #711Information Security and Ethical Hacking Fundamentals
It is an entity or event with the potential to adversely impact a system through unauthorized acces, destruction, disclosure, denial of service or modification of data. Which of th...
threat definitionsecurity terminologyrisk conceptsvulnerability vs threat - Question #712Hacking Web Applications
Which of the following is one of the most effective ways to prevent Cross-site Scripting (XSS) flaws in software applications?
XSS preventioninput validationoutput encodingweb application security - Question #713Hacking Web Servers
Gavin owns a white-hat firm and is performing a website security audit for one of his clients. He begins by running a scan which looks for common misconfigurations and outdated sof...
Niktoweb server scanningvulnerability scanningmisconfiguration detection - Question #714System Hacking
Matthew, a black hat, has managed to open a meterpreter session to one of the kiosk machines in Evil Corp's lobby. He checks his current SID, which is S-1-5-21-1223352397-187288382...
privilege escalationWindows SIDmeterpreterpost-exploitation - Question #715SQL Injection
Elliot is in the process of exploiting a web application that uses SQL as a back-end database. He is determined that the application is vulnerable to SQL injection and has introduc...
blind SQL injectiontime-based injectionSQL injection techniquesconditional delays - Question #716System Hacking
You have successfully logged on a Linux system. You want to now cover your track. Your login attempt may be logged on several files located in /var/log. Which file does NOT belong...
log tamperingLinux logscovering tracksaudit logs - Question #717Social Engineering
When you return to your desk after a lunch break, you notice a strange email in your inbox. The sender is someone you did business with recently, but the subject line has strange c...
phishing emailincident responsesuspicious email handlingsecurity awareness - Question #718Information Security and Ethical Hacking Fundamentals
The "gray box testing" methodology enforces what kind of restriction?
gray box testingpenetration testing methodologytesting typespartial knowledge testing - Question #719Scanning Networks
Log monitoring tools performing behavioral analysis have alerted several suspicious logins on a Linux server occuring during non-business hours. After further examination of all lo...
NTPtime synchronizationLinux servernetwork protocols - Question #720Information Security and Ethical Hacking Fundamentals
The "black box testing" methodology enforces what kind of restriction?
black box testingpenetration testing methodologytesting typeszero knowledge testing - Question #721Scanning Networks
The NMAP command above performs which of the following? > NMAP -sn 192.168.11.200-215
Nmapping scanhost discoverynetwork scanning - Question #722Enumeration
An LDAP directory can be used to store information similar to a SQL database. LDAP uses a ____ database structure instead of SQL's ______ structure. Because of this, LDAP has diffi...
LDAPdirectory serviceshierarchical databaseSQL comparison - Question #723Footprinting and Reconnaissance
What is the purpose of DNS AAAA record?
DNS recordsAAAA recordIPv6name resolution - Question #724Evading IDS, Firewalls, and Honeypots
Which of the following statements is FALSE with respect to Intrusion Detection Systems?
IDS limitationsencrypted trafficintrusion detectionsignature library - Question #725Enumeration
You are performing a penetration test for a client and have gained shell access to a Windows machine on the internal network. You intend to retrieve all DNS records for the interna...
DNS zone transfernslookupinternal DNSenumeration commands - Question #726Scanning Networks
Which command can be used to show the current TCP/IP connections?
netstatTCP/IP connectionsWindows commandsnetwork monitoring - Question #727Footprinting and Reconnaissance
You are performing information gathering for an important penetration test. You have found pdf, doc, and images in your objective. You decide to extract metadata from these files a...
metadata extractionMetagoofilOSINTdocument analysis - Question #728Evading IDS, Firewalls, and Honeypots
You have several plain-text firewall logs that you must review to evaluate network traffic. You know that in order to do fast, efficient searches of the logs you must use regular e...
grepregular expressionsfirewall logslog analysis - Question #729Footprinting and Reconnaissance
This phase will increase the odds of success in later phases of the penetration test. It is also the very first step in Information Gathering and it will tell you the "landscape" l...
footprintinginformation gatheringpenetration testing phasesreconnaissance - Question #730Footprinting and Reconnaissance
When you are collecting information to perform a data analysis, Google commands are very useful to find sensitive information and files. These files may contain information about p...
Google hackingdorkingfiletype operatorOSINT - Question #731Enumeration
You have successfully gained access to your client's internal network and successfully comprised a Linux server which is part of the internal IP network. You want to know which Mic...
SMBport 445file sharingWindows enumeration - Question #732Cryptography
Which of the following is assured by the use of a hash?
hash functiondata integrityCIA triadcryptographic hash - Question #733Information Security and Ethical Hacking Fundamentals
Risks=Threats x Vulnerabilities is referred to as the:
risk equationthreatvulnerabilityrisk management - Question #734Information Security and Ethical Hacking Fundamentals
The tools which receive event logs from servers, network equipment, and applications, and perform analysis and correlation on those logs, and can generate alarms for security relev...
SIEMevent log correlationsecurity monitoringlog management - Question #735Information Security and Ethical Hacking Fundamentals
You have just been hired to perform a pen test on an organization that has been subjected to a large-scale attack. The CIO is concerned with mitigating threats and vulnerabilities...
risk managementpenetration testing scoperisk reductionsecurity consulting - Question #736Hacking Wireless Networks
The purpose of a _______is to deny network access to local area networks and other information assets by unauthorized wireless devices.
wireless access controlunauthorized wireless devicesWACLnetwork access control - Question #737Scanning Networks
What does the -oX flag do in an Nmap scan?
NmapXML outputscan flags-oX option - Question #738Scanning Networks
During an Xmas scan, what indicates a port is closed?
Xmas scanRST flagclosed portport scanning techniques - Question #739Hacking Web Applications
While performing online banking using a Web browser, a user receives an email that contains a link to an interesting Web site. When the user clicks on the link, another Web browser...
CSRFcross-site request forgerysession hijackingweb browser attack - Question #740Evading IDS, Firewalls, and Honeypots
Tremp is an IT Security Manager, and he is planning to deploy an IDS in his small company. He is looking for an IDS with the following characteristics: -Verifies success or failure...
host-based IDSHIDS vs NIDSIDS selectionintrusion detection types - Question #741System Hacking
Which of the following parameters describe LM Hash: I - The maximum password length is 14 characters II - There are no distinctions between uppercase and lowercase III - The passwo...
LM HashWindows password hashinghash propertiesauthentication - Question #742Hacking Wireless Networks
Which of the following is not a Bluetooth attack?
Bluetooth attacksBluesnarfingBluejackingwireless threats - Question #743Hacking Web Applications
The Open Web Application Security Project (OWASP) is the worldwide not-for-profit charitable organization focused on improving the security of software. What item is the primary co...
OWASP Top Teninjectionweb application securitySQL injection - Question #744Sniffing
A pen-tester is configuring a Windows laptop for a test. In setting up Wireshark, what river and library are required to allow the NIC to work in promiscous mode?
Wiresharkpromiscuous modeWinPcappacket capture - Question #745Evading IDS, Firewalls, and Honeypots
Analyst is investigating proxy logs and found out that one of the internal user visited website storing suspicious java scripts. After opening one of them, he noticed that it is ve...
obfuscationJavaScriptmalicious codeevasion - Question #746Information Security and Ethical Hacking Fundamentals
During the security audit of IT processes, an IS auditor found that there were no documented security procedures. What should the IS auditor do?
IS auditingsecurity procedurescompliancerisk assessment - Question #747Evading IDS, Firewalls, and Honeypots
You just set up a security system in your network. In what kind of system would you find the following string of characters used as a rule within its configuration? alert tcp any a...
IDS rulesSnortsignature detectionalert syntax - Question #748Scanning Networks
While scanning with Nmap, Patin found several hosts which have the IP ID of incremental kiosk.adobe.com is the host with incremental IP ID sequence. What is the purpose of using "-...
Nmapidle scanIP ID sequencestealth scanning - Question #749Information Security and Ethical Hacking Fundamentals
What is the process of logging, recording, and resolving events that take place in an organization?
incident managementevent loggingsecurity operationsITSM - Question #750Evading IDS, Firewalls, and Honeypots
During a blackbox pen test you attempt to pass IRC traffic over port 80/TCP from a compromised web enabled host. The traffic gets blocked; however, outbound HTTP traffic is unimped...
application firewalldeep packet inspectiontraffic filteringIRC tunneling - Question #751Information Security and Ethical Hacking Fundamentals
The change of a hard drive failure is once every three years. The cost to buy a new hard drive is $300. It will require 10 hours to restore the OS and software to the new hard disk...
SLEAROALErisk calculation - Question #752Social Engineering
An IT employee got a call from one our best customers. The caller wanted to know about the company's network infrastructure, systems, and team. New opportunities of integration are...
social engineeringinformation disclosuresecurity policypretexting