312-50V12 Exam Questions
322 real 312-50V12 exam questions with expert-verified answers and explanations. Page 5 of 7.
- Question #201Information Security and Ethical Hacking Overview
During an ethical hacking engagement, you have been assigned to evaluate the security of a large organization's network. While examining the network traffic, you notice numerous in...
script kiddieshacker typesattack classificationintrusion attempts - Question #202Reconnaissance Techniques
Your company suspects a potential security breach and has hired you as a Certified Ethical Hacker to investigate. You discover evidence of footprinting through search engines and a...
footprintingGoogle hackingOSINTsearch operators - Question #203System Hacking Phases and Attack Techniques
In a recent cyber-attack against a large corporation, an unknown adversary compromised the network and began escalating privileges and lateral movement. The security team identifie...
privilege escalationzero-day exploitsattack analysisinitial exploitation - Question #204Reconnaissance Techniques
Jason, a certified ethical hacker, is hired by a major e-commerce company to evaluate their network's security. As part of his reconnaissance, Jason is trying to gain as much infor...
passive reconnaissancefootprintingnetwork mappingIDS evasion - Question #205Wireless Network, Mobile, IoT, and OT Hacking
As the lead security engineer for a retail corporation, you are assessing the security of the wireless networks in the company's stores. One of your main concerns is the potential...
wireless securityWardrivingWPA3network security - Question #206Network and Perimeter Hacking
A penetration tester was assigned to scan a large network range to find live hosts. The network is known for using strict TCP filtering rules on its firewall, which may obstruct co...
host discoveryfirewall evasionnetwork scanningUDP scan - Question #207Web Application Hacking
As part of a college project, you have set up a web server for hosting your team's application. Given your interest in cybersecurity, you have taken the lead in securing the server...
web server securityserver hardeningconfiguration auditsattack surface reduction - Question #208Cryptography
You are the chief cybersecurity officer at CloudSecure Inc., and your team is responsible for securing a cloud based application that handles sensitive customer data. To ensure tha...
data encryptiondata integritySSL/TLSIPsec - Question #209System Hacking Phases and Attack Techniques
Sarah, a system administrator, was alerted of potential malicious activity on the network of her company. She discovered a malicious program spread through the instant messenger ap...
malware spreadinstant messaging securitysocial engineeringuser awareness - Question #210Cryptography
A multinational organization has recently faced a severe information security breach. Investigations reveal that the attacker had a high degree of understanding of the organization...
attack typespassive attacksencryptiondata confidentiality - Question #211Cloud Computing
As a security analyst for SkySecure Inc., you are working with a client that uses a multi-cloud strategy, utilizing services from several cloud providers. The client wants to imple...
multi-cloud securityCASBsecurity managementcloud security policies - Question #212Wireless Network, Mobile, IoT, and OT Hacking
As a security consultant, you are advising a startup that is developing an IoT device for home security. The device communicates with a mobile app, allowing homeowners to monitor t...
IoT securityMitM attacksSSL/TLSdata in transit encryption - Question #213Network and Perimeter Hacking
A Certified Ethical Hacker (CEH) is analyzing a target network. To do this, he decides to utilize an IDLE/IPID header scan using Nmap. The network analysis reveals that the IPID nu...
Nmap scanIDLE scanIPID sequencefirewall detection - Question #214Web Application Hacking
You have been given the responsibility to ensure the security of your school's web server. As a step towards this, you plan to restrict unnecessary services running on the server....
web server hardeningattack surface reductionservice managementsecurity best practices - Question #215Web Application Hacking
An ethical hacker is hired to evaluate the defenses of an organization's database system which is known to employ a signature-based IDS. The hacker knows that some SQL Injection ev...
SQL injection evasionIDS bypassweb application attacksencoding techniques - Question #216Wireless Network, Mobile, IoT, and OT Hacking
As the Chief Information Security Officer (CISO) at a large university, you are responsible for the security of a campus-wide Wi-Fi network that serves thousands of students, facul...
Wi-Fi security802.1Xnetwork authenticationcredential management - Question #217Reconnaissance Techniques
An ethical hacker is scanning a target network. They initiate a TCP connection by sending an SYN packet to a target machine and receiving a SYN/ACK packet in response. But instead...
SYN scanport scanningstealth scanningnetwork reconnaissance - Question #218System Hacking Phases and Attack Techniques
In the process of setting up a lab for malware analysis, a cybersecurity analyst is tasked to establish a secure environment using a sheep dip computer. The analyst must prepare th...
malware analysissandbox environmentsheep dipnetwork isolation - Question #219Reconnaissance Techniques
A large e-commerce organization is planning to implement a vulnerability assessment solution to enhance its security posture. They require a solution that imitates the outside view...
Vulnerability assessmentInference-based scanningAutomated scanning - Question #220Reconnaissance Techniques
During a penetration testing assignment, a Certified Ethical Hacker (CEH) used a set of scanning tools to create a profile of the target organization. The CEH wanted to scan for li...
Hping3IP spoofingNetwork scanningAnonymity - Question #221Reconnaissance Techniques
An ethical hacker is hired to conduct a comprehensive network scan of a large organization that strongly suspects potential intrusions into their internal systems. The hacker decid...
Network scanningNmapHping3Ping sweepSYN scan - Question #222Network and Perimeter Hacking
While working as an intern for a small business, you have been tasked with managing the company's web server. The server is being bombarded with requests, and the company's website...
DDoS mitigationIncident responseISP assistanceWeb server security - Question #223Cloud Computing
As a cybersecurity consultant, you are working with a client who wants to migrate their data to a Software as a Service (SaaS) cloud environment. They are particularly concerned ab...
SaaS securityData privacyClient-side encryptionCloud security - Question #224Network and Perimeter Hacking
An ethical hacker is performing a network scan to evaluate the security of a company's IT infrastructure. During the scan, he discovers an active host with multiple open ports runn...
TCP handshakeVulnerability scanningPort scanningNetwork communication - Question #225System Hacking Phases and Attack Techniques
A multinational corporation's computer system was infiltrated by an advanced persistent threat (APT). During forensic analysis, it was discovered that the malware was utilizing a b...
Malware analysisRootkitMetamorphic malwareAPT - Question #226System Hacking Phases and Attack Techniques
As a certified ethical hacker, you are performing a system hacking process for a company that is suspicious about its security system. You found that the company's passwords are al...
Password crackingRule-based attackHybrid attackPassword security - Question #227Network and Perimeter Hacking
A security analyst is investigating a potential network-level session hijacking incident. During the investigation, the analyst finds that the attacker has been using a technique i...
Session hijackingRST hijackingTCP/IP hijackingSpoofing - Question #228Wireless Network, Mobile, IoT, and OT Hacking
During a red team engagement, an ethical hacker is tasked with testing the security measures of an organization's wireless network. The hacker needs to select an appropriate tool t...
Wireless network hackingSession hijackingWPA-PSKBettercap - Question #229Reconnaissance Techniques
As a certified ethical hacker, you are tasked with gaining information about an enterprise's internal network. You are permitted to test the network's security using enumeration te...
Network enumerationNetBIOS exploitationOpen portsSMTP enumeration - Question #230Network and Perimeter Hacking
A large corporate network is being subjected to repeated sniffing attacks. To increase security, the company's IT department decides to implement a combination of several security...
Sniffing countermeasuresNetwork monitoringARP spoofing preventionEncrypted protocols - Question #231Wireless Network, Mobile, IoT, and OT Hacking
As the chief security officer at SecureMobile, you are overseeing the development of a mobile banking application. You are aware of the potential risks of man-in-the-middle (MitM)...
Mobile app securityMitM attackRogue Wi-FiNetwork detection - Question #232Information Security and Ethical Hacking Overview
A cyber attacker has initiated a series of activities against a high-profile organization following the Cyber Kill Chain Methodology. The attacker is presently in the "Delivery" st...
Cyber Kill ChainDelivery stageExploitationAttack phases - Question #233Cloud Computing
You are a cloud security expert at CloudGuard Inc. working with a client who plans to transition their infrastructure to a public cloud. The client expresses concern about potentia...
Zero TrustCloud securityLeast privilegeAccess control - Question #234Cryptography
Your company, Encryptor Corp, is developing a new application that will handle highly sensitive user information. As a cybersecurity specialist, you want to ensure this data is sec...
CryptographyData integrityDigital signatureHashingEncryption - Question #235Web Application Hacking
As part of a penetration testing team, you've discovered a web application vulnerable to Cross- Site Scripting (XSS). The application sanitizes inputs against standard XSS payloads...
XSS exploitationHTML encoding bypassBuffer overflowSession hijacking - Question #236Web Application Hacking
An ethical hacker is testing the security of a website's database system against SQL Injection attacks. They discover that the IDS has a strong signature detection mechanism to det...
SQL InjectionIDS evasionHex encodingSignature detection bypass - Question #237Web Application Hacking
You have been hired as an intern at a start-up company. Your first task is to help set up a basic web server for the company's new website. The team leader has asked you to make su...
Web server securityPatch managementVulnerability managementSystem hardening - Question #238Network and Perimeter Hacking
A sophisticated attacker targets your web server with the intent to execute a Denial of Service (DoS) attack. His strategy involves a unique mixture of TCP SYN, UDP, and ICMP flood...
DoS attackNetwork floodingServer capacityAttack outcome - Question #239System Hacking Phases and Attack Techniques
An IT security team is conducting an internal review of security protocols in their organization to identify potential vulnerabilities. During their investigation, they encounter a...
KeyloggerMalwareIntrusion DetectionSecurity Audits - Question #240Reconnaissance Techniques
Being a Certified Ethical Hacker (CEH), a company has brought you on board to evaluate the safety measures in place for their network system. The company uses a network time protoc...
NTP enumerationntptraceNetwork reconnaissanceCommand-line tools - Question #241Reconnaissance Techniques
A Certified Ethical Hacker is attempting to gather information about a target organization's network structure through network footprinting. During the operation, they encounter IC...
TracerouteICMP blockingUDP tracerouteNetwork footprinting - Question #242Reconnaissance Techniques
An ethical hacker is preparing to scan a network to identify live systems. To increase the efficiency and accuracy of his scans, he is considering several different host discovery...
Host discoveryNetwork scanningARP pingFirewall evasion - Question #243Reconnaissance Techniques
A penetration tester is tasked with gathering information about the subdomains of a target organization's website. The tester needs a versatile and efficient solution for the task....
Subdomain enumerationOSINT toolsSublist3rFootprinting - Question #244Network and Perimeter Hacking
Your network infrastructure is under a SYN flood attack. The attacker has crafted an automated botnet to simultaneously send 's' SYN packets per second to the server. You have put...
SYN floodDDoSNetwork overloadAttack mitigation - Question #245Web Application Hacking
A penetration tester is conducting an assessment of a web application for a financial institution. The application uses form-based authentication and does not implement account loc...
Brute forceWeb application vulnerabilitiesAuthentication bypassAccount lockout - Question #246Network and Perimeter Hacking
In a large organization, a network security analyst discovered a series of packet captures that seem unusual. The network operates on a switched Ethernet environment. The security...
Network sniffingSwitched networksMAC floodingARP poisoning - Question #247Wireless Network, Mobile, IoT, and OT Hacking
You are a cybersecurity consultant for a smart city project. The project involves deploying a vast network of IoT devices for public utilities like traffic control, water supply, a...
IoT securityDDoS preventionIntrusion Detection SystemsSmart city - Question #248Reconnaissance Techniques
Consider a scenario where a Certified Ethical Hacker is attempting to infiltrate a company's network without being detected. The hacker intends to use a stealth scan on a BSD-deriv...
Stealth scanningTCP flagsFirewall evasionNetwork scanning - Question #249Web Application Hacking
While performing a security audit of a web application, an ethical hacker discovers a potential vulnerability. The application responds to logically incorrect queries with detailed...
SQL injectionError-based SQLiWeb application vulnerabilitiesDatabase attacks - Question #250Information Security and Ethical Hacking Overview
You are a security analyst of a large IT company and are responsible for maintaining the organization's security posture. You are evaluating multiple vulnerability assessment tools...
Vulnerability managementVulnerability assessment toolsHybrid cloud securityQualys