nerdexam
EC-CouncilEC-Council

312-50V12 · Question #76

312-50V12 Question #76: Real Exam Question with Answer & Explanation

The correct answer is A: Matt inadvertently provided the answers to his security questions when responding to the post.. Security questions are often used as a way to verify a user's identity when they are trying to reset their password. The answers to these questions are typically personal information that is known only to the user, such as their mother's maiden name or their childhood pet's name.

Submitted by saadiq_pk· Mar 4, 2026Reconnaissance Techniques

Question

While browsing his Facebook feed, Matt sees a picture one of his friends posted with the caption, "Learn more about your friends!", as well as a number of personal questions. Matt is suspicious and texts his friend, who confirms that he did indeed post it. With assurance that the post is legitimate, Matt responds to the questions on the post. A few days later, Matt's bank account has been accessed, and the password has been changed. What most likely happened?

Options

  • AMatt inadvertently provided the answers to his security questions when responding to the post.
  • BMatt inadvertently provided his password when responding to the post.
  • CMatt's computer was infected with a keylogger.
  • DMatt's bank-account login information was brute forced.

Explanation

Security questions are often used as a way to verify a user's identity when they are trying to reset their password. The answers to these questions are typically personal information that is known only to the user, such as their mother's maiden name or their childhood pet's name. In this case, Matt responded to a post that asked him a number of personal questions. These questions were likely security questions for his bank account. By answering these questions, Matt inadvertently provided the answers to his security questions to the attacker. This allowed the attacker to reset Matt's password and gain access to his bank account.

Topics

#Social engineering#Security questions#Account compromise#Information gathering

Community Discussion

No community discussion yet for this question.

Full 312-50V12 PracticeBrowse All 312-50V12 Questions