CPEH-001 Exam Questions
1,043 real CPEH-001 exam questions with expert-verified answers and explanations. Page 7 of 21.
- Question #304
One advantage of an application-level firewall is the ability to
- Question #305
Which of the statements concerning proxy firewalls is correct?
- Question #306
On a Linux device, which of the following commands will start the Nessus client in the background so that the Nessus server can be configured?
- Question #307
Which of the following tools will scan a network to perform vulnerability checks and compliance auditing?
- Question #308
What is the best defense against privilege escalation vulnerability?
- Question #309
How can a rootkit bypass Windows 7 operating system's kernel mode, code signing policy?
- Question #310
Which of the following items of a computer system will an anti-virus program scan for viruses?
- Question #311
Which protocol and port number might be needed in order to send log messages to a log analysis tool that resides behind a firewall?
- Question #312
A pentester is using Metasploit to exploit an FTP server and pivot to a LAN. How will the pentester pivot using Metasploit?
- Question #313
What is the outcome of the comm"nc -l -p 2222 | nc 10.1.0.43 1234"?
- Question #314
Which of the following is a client-server tool utilized to evade firewall inspection?
- Question #315
Which tool is used to automate SQL injections and exploit a database by forcing a given web application to connect to another database controlled by a hacker?
- Question #316
Which of the following identifies the three modes in which Snort can be configured to run?
- Question #317
When using Wireshark to acquire packet capture on a network, which device would enable the capture of all traffic on the wire?
- Question #318
Which of the following programming languages is most vulnerable to buffer overflow attacks?
- Question #319
Smart cards use which protocol to transfer the certificate in a secure manner?
- Question #320
Which of the following is a hashing algorithm?
- Question #321
Which of the following problems can be solved by using Wireshark?
- Question #322
What is the correct PCAP filter to capture all TCP traffic going to or from host 192.168.0.125 on port 25?
- Question #323
Which tool would be used to collect wireless packet data?
- Question #324
Which of the following is an example of two factor authentication?
- Question #325
Diffie-Hellman (DH) groups determine the strength of the key used in the key exchange process. Which of the following is the correct bit size of the Diffie-Hellman (DH) group 5?
- Question #326
After gaining access to the password hashes used to protect access to a web based application, knowledge of which cryptographic algorithms would be useful to gain access to the app...
- Question #327
What statement is true regarding LM hashes?
- Question #328
A developer for a company is tasked with creating a program that will allow customers to update their billing and shipping information. The billing address field used is limited to...
- Question #329
A security analyst in an insurance company is assigned to test a new web application that will be used by clients to help them choose and apply for an insurance plan. The analyst d...
- Question #330
A security administrator notices that the log file of the company's webserver contains suspicious entries: Based on source code analysis, the analyst concludes that the login.php s...
- Question #331
Which solution can be used to emulate computer services, such as mail and ftp, and to capture information related to logins or actions?
- Question #332
Which command lets a tester enumerate alive systems in a class C network via ICMP using native Windows tools?
- Question #333
What results will the following command yield: 'NMAP -sS -O -p 123-153 192.168.100.3'?
- Question #334
Which of the following parameters enables NMAP's operating system detection feature?
- Question #335
Which of the following open source tools would be the best choice to scan a network for potential targets?
- Question #336
A hacker is attempting to see which IP addresses are currently active on a network. Which NMAP switch would the hacker use?
- Question #337
A hacker, who posed as a heating and air conditioning specialist, was able to install a sniffer program in a switched environment network. Which attack could the hacker use to snif...
- Question #338
Which of the following settings enables Nessus to detect when it is sending too many packets and the network pipe is approaching capacity?
- Question #339
How does an operating system protect the passwords used for account logins?
- Question #340
An attacker has been successfully modifying the purchase price of items purchased on the company's web site. The security administrators verify the web server and Oracle database h...
- Question #341
Which tool can be used to silently copy files from USB devices?
- Question #342
Which of the following is used to indicate a single-line comment in structured query language (SQL)?
- Question #343
A security engineer is attempting to map a company's internal network. The engineer enters in the following NMAP command: NMAP -n -sS -P0 -p 80 ***.***.**.** What type of scan is t...
- Question #344
What is the broadcast address for the subnet 190.86.168.0/22?
- Question #345
A company is using Windows Server 2003 for its Active Directory (AD). What is the most efficient way to crack the passwords for the AD users?
- Question #346
Which of the following does proper basic configuration of snort as a network intrusion detection system require?
- Question #347
How is sniffing broadly categorized?
- Question #348
What are the three types of authentication?
- Question #349
The use of technologies like IPSec can help guarantee the following: authenticity, integrity, confidentiality and
- Question #350
What is the main disadvantage of the scripting languages as opposed to compiled programming languages?
- Question #351
A botnet can be managed through which of the following?
- Question #352
Fingerprinting VPN firewalls is possible with which of the following tools?
- Question #353
What is a successful method for protecting a router from potential smurf attacks?