nerdexam
EC-Council

412-79V8 · Question #46

412-79V8 Question #46: Real Exam Question with Answer & Explanation

Sign in or unlock 412-79V8 to reveal the answer and full explanation for question #46. The question stem and answer options stay visible for context.

Question

Due to illegal inputs, various types of TCP stacks respond in a different manner. Some IDSs do not take into account the TCP protocol's urgency feature, which could allow testers to evade the IDS. Penetration tester needs to try different combinations of TCP flags (e.g. none, SYN/FIN, SYN/RST, SYN/FIN/ACK, SYN/RST/ACK, and All Flags) to test the IDS. Which of the following TCP flag combinations combines the problem of initiation, midstream, and termination flags with the PSH and URG?

Exhibit

412-79V8 question #46 exhibit

Options

  • ASYN/RST/ACK
  • BSYN/FIN/ACK
  • CSYN/FIN
  • DAll Flags

Unlock 412-79V8 to see the answer

You've previewed enough free 412-79V8 questions. Unlock 412-79V8 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full 412-79V8 Practice