312-50V11 Practice Questions
1,039 real 312-50V11 exam questions with expert-verified answers and explanations. Page 18 of 21.
- Question #853Scanning Networks
You have successfully comprised a server having an IP address of 10.10.0.5. You would like to enumerate all machines in the same network quickly. What is the best Nmap command you...
Nmapfast scannetwork enumerationsubnet scanning - Question #854Vulnerability Analysis
Morris, a professional hacker, performed a vulnerability scan on a target organization by sniffing the traffic on the network lo identify the active systems, network services, appl...
passive assessmenttraffic sniffingvulnerability scanningnetwork monitoring - Question #855Hacking Wireless Networks
This wireless security protocol allows 192-bit minimum-strength security protocols and cryptographic tools to protect sensitive data, such as GCMP-2S6. MMAC-SHA384, and ECDSA using...
WPA3-Enterprise192-bit securityGCMP-256wireless encryption - Question #856Evading IDS, Firewalls, and Honeypots
What firewall evasion scanning technique make use of a zombie system that has low network activity as well as its fragment identification numbers?
idle scanningzombie hostfirewall evasionIP ID sequence - Question #857SQL Injection
SQL injection (SQLi) attacks attempt to inject SQL syntax into web requests, which may bypass authentication and allow attackers to access and/or modify data attached to a web appl...
out-of-band SQLiDNS exfiltrationSQL injectiondata exfiltration - Question #858Vulnerability Analysis
in the Common Vulnerability Scoring System (CVSS) v3.1 severity ratings, what range does medium vulnerability fall in?
CVSS v3.1severity ratingsvulnerability scoringmedium severity - Question #859Hacking Wireless Networks
You are a penetration tester tasked with testing the wireless network of your client Brakeme SA. You are attempting to break into the wireless network with the SSID "Brakeme-lntern...
WPA3DragonbloodSAE vulnerabilitywireless exploitation - Question #860Hacking Web Servers
Attacker Steve targeted an organization's network with the aim of redirecting the company's web traffic to another malicious website. To achieve this goal, Steve performed DNS cach...
pharmingDNS cache poisoningDNS spoofingidentity theft - Question #861System Hacking
What is the correct way of using MSFvenom to generate a reverse TCP shellcode for windows?
MSFvenomreverse TCP shellcodemeterpreterpayload generation - Question #862Information Security and Ethical Hacking Fundamentals
Harry. a professional hacker, targets the IT infrastructure of an organization. After preparing for the attack, he attempts to enter the target network using techniques such as sen...
APT lifecycleinitial intrusionspear-phishingmalware deployment - Question #863Social Engineering
Johnson, an attacker, performed online research for the contact details of reputed cybersecurity firms. He found the contact number of sibertech.org and dialed the number, claiming...
quid pro quovishingphone-based social engineeringpretexting - Question #864System Hacking
Ricardo has discovered the username for an application in his targets environment. As he has a limited amount of time, he decides to attempt to use a list of common passwords he fo...
dictionary attackpassword crackingwordlist attackcredential attacks - Question #865Footprinting and Reconnaissance
Richard, an attacker, targets an MNC. in this process, he uses a footprinting technique to gather as much information as possible. Using this technique, he gathers domain informati...
Whois footprintingdomain reconnaissanceOSINTpassive footprinting - Question #866Footprinting and Reconnaissance
Taylor, a security professional, uses a tool to monitor her company's website, analyze the website's traffic, and track the geographical location of the users visiting the company'...
website monitoringtraffic analysisgeolocation trackingweb analytics - Question #867Evading IDS, Firewalls, and Honeypots
Kevin, a professional hacker, wants to penetrate CyberTech Inc.'s network. He employed a technique, using which he encoded packets with Unicode characters. The company's IDS cannot...
IDS evasionUnicode obfuscationpacket encodingobfuscation techniques - Question #868Scanning Networks
Henry Is a cyber security specialist hired by BlackEye - Cyber security solutions. He was tasked with discovering the operating system (OS) of a host. He used the Unkornscan tool t...
OS fingerprintingTTL valuesWindows identificationpassive fingerprinting - Question #869Information Security and Ethical Hacking Fundamentals
Bob was recently hired by a medical company after it experienced a major cyber security breach. Many patients are complaining that their personal medical records are fully exposed...
HIPAAPHIdata privacy compliancehealthcare regulations - Question #870Scanning Networks
If a tester is attempting to ping a target that exists but receives no response or a response that states the destination is unreachable, ICMP may be disabled and the network may b...
HpingTCP pingICMP alternativeshost discovery - Question #871Hacking Mobile Platforms
Steven connected his iPhone to a public computer that had been infected by Clark, an attacker. After establishing the connection with the public computer, Steven enabled iTunes WI-...
iOS trustjackingiTunes WiFi syncmobile device attackiPhone exploitation - Question #872Cloud Computing
Alice, a professional hacker, targeted an organization's cloud services. She infiltrated the targets MSP provider by sending spear-phishing emails and distributed custom-made malwa...
cloud hopper attackMSP compromisesupply chain attackspear-phishing - Question #873Hacking Web Applications
While testing a web application in development, you notice that the web server does not properly ignore the "dot dot slash" (../) character string and instead returns the file list...
directory traversalpath traversalfile system exposureweb server misconfiguration - Question #874Information Security and Ethical Hacking Fundamentals
You are a penetration tester working to test the user awareness of the employees of the client xyz. You harvested two employees' emails from some public sources and are creating a...
cyber kill chainweaponizationclient-side backdoormalware crafting - Question #875Footprinting and Reconnaissance
jane, an ethical hacker. Is testing a target organization's web server and website to identity security loopholes. In this process, she copied the entire website and its content on...
website mirroringweb crawlingdirectory structure mappingfootprinting - Question #876Footprinting and Reconnaissance
You have been authorized to perform a penetration test against a website. You want to use Google dorks to footprint the site but only want results that show file extensions. What G...
Google dorksfiletype operatorOSINTpassive reconnaissance - Question #877Enumeration
Which of the following commands checks for valid users on an SMTP server?
SMTP enumerationVRFY commanduser enumerationemail server - Question #878Hacking Wireless Networks
jane invites her friends Alice and John over for a LAN party. Alice and John access Jane's wireless network without a password. However. Jane has a long, complex password on her ro...
evil twin attackrogue access pointwireless deceptionWPA bypass - Question #879Evading IDS, Firewalls, and Honeypots
if you send a TCP ACK segment to a known closed port on a firewall but it does not respond with an RST. What do you know about the firewall you are scanning?
stateful firewallACK scanningfirewall detectionTCP state tracking - Question #880Footprinting and Reconnaissance
Wilson, a professional hacker, targets an organization for financial benefit and plans to compromise its systems by sending malicious emails. For this purpose, he uses a tool to tr...
email footprintingInfoga toolOSINTemail header analysis - Question #881Enumeration
During the enumeration phase. Lawrence performs banner grabbing to obtain information such as OS details and versions of services running. The service that he enumerated runs direc...
SMB enumerationbanner grabbingTCP port 445service enumeration - Question #882Cryptography
Samuel a security administrator, is assessing the configuration of a web server. He noticed that the server permits SSlv2 connections, and the same private key certificate is used...
DROWN attackSSLv2 vulnerabilityprivate key sharingSSL/TLS attacks - Question #883Evading IDS, Firewalls, and Honeypots
Robin, an attacker, is attempting to bypass the firewalls of an organization through the DNS tunneling method in order to exfiltrate data. He is using the NSTX tool for bypassing t...
DNS tunnelingNSTX toolfirewall evasionport 53 - Question #884Cryptography
In the field of cryptanalysis, what is meant by a "rubber-hose" attack?
rubber-hose attackcryptanalysiscoercionphysical attack - Question #885Hacking Wireless Networks
in this attack, an adversary tricks a victim into reinstalling an already-in-use key. This is achieved by manipulating and replaying cryptographic handshake messages. When the vict...
KRACKkey reinstallation attackWPA2handshake replay - Question #886IoT and OT Hacking
Jim, a professional hacker, targeted an organization that is operating critical Industrial Infrastructure. Jim used Nmap to scan open pons and running services on systems connected...
NmapEtherNet/IPOT network scanningport 44818 - Question #887Scanning Networks
Log monitoring tools performing behavioral analysis have alerted several suspicious logins on a Linux server occurring during non-business hours. After further examination of all l...
NTPtime synchronizationLinux servernetwork protocols - Question #888Information Security and Ethical Hacking Fundamentals
Bob, your senior colleague, has sent you a mail regarding a deal with one of the clients. You are requested to accept the offer and you oblige. After 2 days. Bob denies that he had...
non-repudiationinformation security principlesemail authenticationCIA triad - Question #889Vulnerability Analysis
John, a disgruntled ex-employee of an organization, contacted a professional hacker to exploit the organization. In the attack process, the professional hacker Installed a scanner...
agent-based scannervulnerability assessmentscanner typesnetwork scanning - Question #890Scanning Networks
You are a penetration tester and are about to perform a scan on a specific server. The agreement that you signed with the client contains the following specific condition for the s...
Nmapdecoy scanningIP spoofing-D flag - Question #891Cloud Computing
There are multiple cloud deployment options depending on how isolated a customer's resources are from those of other customers. Shared environments share the costs and allow each c...
community cloudcloud deployment modelsshared infrastructurecloud computing - Question #892Information Security and Ethical Hacking Fundamentals
The "Gray-box testing" methodology enforces what kind of restriction?
gray-box testingpenetration testing methodologysecurity testingpartial knowledge - Question #893Hacking Wireless Networks
Which of the following Bluetooth hacking techniques refers to the theft of information from a wireless device through Bluetooth?
bluesnarfingBluetooth attackswireless data theftmobile device security - Question #894Enumeration
After an audit, the auditors Inform you that there is a critical finding that you must tackle Immediately. You read the audit report, and the problem is the service running on port...
LDAPport 389LDAPS port 636unencrypted protocols - Question #895Enumeration
What would be the fastest way to perform content enumeration on a given web server by using the Gobuster tool?
Gobusterdirectory enumerationwordlistweb content discovery - Question #896Enumeration
John, a professional hacker, targeted an organization that uses LDAP for accessing distributed directory services. He used an automated tool to anonymously query the IDAP service f...
JXplorerLDAP enumerationanonymous querydirectory services - Question #897SQL Injection
Ethical hacker jane Smith is attempting to perform an SQL injection attack. She wants to test the response time of a true or false response and wants to use a second command to det...
time-based blind SQLiboolean-based blind SQLiSQL injection typesblind injection - Question #898Hacking Web Servers
what are common files on a web server that can be misconfigured and provide useful Information for a hacker such as verbose error messages?
web server misconfigurationphp.iniverbose error messagesinformation disclosure - Question #899IoT and OT Hacking
Richard, an attacker, aimed to hack loT devices connected to a target network. In this process. Richard recorded the frequency required to share information between connected devic...
replay attackIoT securitysignal captureURH tool - Question #900Vulnerability Analysis
Sam is working as a system administrator In an organization. He captured the principal characteristics of a vulnerability and produced a numerical score to reflect Its severity usi...
CVSS v3.0vulnerability scoringseverity ratingvulnerability management - Question #901Malware Threats
A friend of yours tells you that he downloaded and executed a file that was sent to him by a coworker. Since the file did nothing when executed, he asks you for help because he sus...
trojan detectionnetstatoutgoing connectionsmalware analysis - Question #902Footprinting and Reconnaissance
Gerard, a disgruntled ex-employee of Sunglass IT Solutions, targets this organization to perform sophisticated attacks and bring down its reputation in the market. To launch the at...
DNS footprintingDNS zone transferautomated reconnaissance toolsnetwork mapping