CPEH-001 Exam Questions
1,043 real CPEH-001 exam questions with expert-verified answers and explanations. Page 9 of 21.
- Question #404
A certified ethical hacker (CEH) is approached by a friend who believes her husband is cheating. She offers to pay to break into her husband's email account in order to find proof...
- Question #405Introduction to Ethical Hacking and Information Security
This international organization regulates billions of transactions daily and provides security guidelines to protect personally identifiable information (PII). These security contr...
PCI DSScompliancePIIregulatory frameworks - Question #406Web Server and Web Application Hacking
While using your bank's online servicing you notice the following string in the URL bar: &Camount= 21" You observe that if you modify the Damount & Camount values and submit the re...
web parameter tamperingURL manipulationinput validationweb vulnerabilities - Question #407Introduction to Ethical Hacking and Information Security
Perspective clients want to see sample reports from previous penetration tests. What should you do next?
pentest ethicsconfidentialityprofessional conductNDA - Question #408Scanning Networks
During a blackbox pen test you attempt to pass IRC traffic over port 80/TCP from a compromised web enabled host. The traffic gets blocked; however, outbound HTTP traffic is unimped...
application firewalldeep packet inspectiontraffic filteringfirewall types - Question #409System Hacking and Malware
You've gained physical access to a Windows 2008 R2 server which has an accessible disc drive. When you attempt to boot the server and log in, you are unable to guess the password....
CHNTPWpassword bypassWindows authenticationphysical access - Question #410
After trying multiple exploits, you've gained root access to a Centos 6 server. To ensure you maintain access, what would you do first?
- Question #411System Hacking and Malware
What is the Shellshock bash vulnerability attempting to do on an vulnerable Linux host? env x=`(){ :;};echo exploit` bash -c 'cat /etc/passwd'
Shellshockbash vulnerabilityremote code execution/etc/passwd - Question #412Enumeration and Vulnerability Analysis
Using Windows CMD, how would an attacker list all the shares to which the current user context has access?
NET USEWindows enumerationnetwork sharesCMD commands - Question #413Denial of Service and Cryptography
A common cryptographical tool is the use of XOR. XOR the following binary values: 10110001 00111010
XORbitwise operationsbinary arithmeticcryptography - Question #414Denial of Service and Cryptography
Which of the following is the successor of SSL?
TLSSSLcryptographic protocolstransport security - Question #415Sniffing and Session Hijacking
You are attempting to man-in-the-middle a session. Which protocol will allow you to guess a sequence number?
TCPsession hijackingsequence numbersMITM - Question #416Footprinting and Reconnaissance
Your team has won a contract to infiltrate an organization. The company wants to have the attack be as realistic as possible; therefore, they did not provide any information beside...
penetration testing methodologyreconnaissanceinformation gatheringpentest phases - Question #417Footprinting and Reconnaissance
You are performing information gathering for an important penetration test. You have found pdf, doc, and images in your objective. You decide to extract metadata from these files a...
Metagoofilmetadata extractionOSINTinformation gathering - Question #418Footprinting and Reconnaissance
When you are collecting information to perform a data analysis, Google commands are very useful to find sensitive information and files. These files may contain information about p...
Google dorkingfiletype operatorOSINTsensitive data discovery - Question #419Denial of Service and Cryptography
What is a "Collision attack" in cryptography?
collision attackhash functionscryptographic attackshash collision - Question #420Social Engineering and Physical Security
You are tasked to perform a penetration test. While you are performing information gathering, you find an employee list in Google. You find the receptionist's email, and you send h...
social engineeringemail spoofingphishingpretexting - Question #421Web Server and Web Application Hacking
When you are getting information about a web server, it is very important to know the HTTP Methods (GET, POST, HEAD, PUT, DELETE, TRACE) that are available because there are two cr...
nmap http-methodsHTTP methodsweb server enumerationPUT DELETE - Question #422Sniffing and Session Hijacking
You are a Network Security Officer. You have two machines. The first machine (192.168.0.99) has snort installed, and the second machine (192.168.0.150) has kiwi syslog installed. Y...
Wireshark filterSnort IDSsyslogpacket filtering - Question #423System Hacking and Malware
Which of the following parameters describe LM Hash (see exhibit):
LM hashWindows authenticationpassword hashinglegacy security - Question #424Introduction to Ethical Hacking and Information Security
What is the process of logging, recording, and resolving events that take place in an organization?
incident managementevent loggingsecurity processorganizational security - Question #425Web Server and Web Application Hacking
The Open Web Application Security Project (OWASP) is the worldwide not-for-profit charitable organization focused on improving the security of software. What item is the primary co...
OWASP Top Teninjectionweb application securitycritical risks - Question #426System Hacking and Malware
Which of the following describes the characteristics of a Boot Sector Virus?
boot sector virusMBRmalware typesvirus behavior - Question #427Introduction to Ethical Hacking and Information Security
You have several plain-text firewall logs that you must review to evaluate network traffic. You know that in order to do fast, efficient searches of the logs you must use regular e...
grepregexlog analysisfirewall logs - Question #428Introduction to Ethical Hacking and Information Security
You've just been hired to perform a pen test on an organization that has been subjected to a large-scale attack. The CIO is concerned with mitigating threats and vulnerabilities to...
risk managementpenetration testingrisk reductionsecurity assessment - Question #429Scanning Networks
A penetration tester is conducting a port scan on a specific host. The tester found several ports opened that were confusing in concluding the Operating System (OS) version install...
Nmapport scanningOS fingerprintingprinter identification - Question #430Social Engineering and Physical Security
Which of the following is the least-likely physical characteristic to be used in biometric control that supports a large company?
biometricsphysical securityaccess controlauthentication factors - Question #431Wireless Network Hacking
Which of the following is not a Bluetooth attack?
Bluetooth attacksBluejackingBluesnarfingwireless attacks - Question #432Footprinting and Reconnaissance
This phase will increase the odds of success in later phases of the penetration test. It is also the very first step in Information Gathering, and it will tell you what the "landsc...
footprintingethical hacking phasesreconnaissanceinformation gathering - Question #433Wireless Network Hacking
The purpose of a __________ is to deny network access to local area networks and other information assets by unauthorized wireless devices.
WIPSwireless securitynetwork access controlintrusion prevention - Question #434Scanning Networks
The NMAP command above performs which of the following? > NMAP -sn 192.168.11.200-215
Nmapping scanhost discoverynetwork scanning - Question #435Footprinting and Reconnaissance
You are using NMAP to resolve domain names into IP addresses for a ping sweep later. Which of the following commands looks for IP addresses?
DNS lookupA recordshost commandIP resolution - Question #436Sniffing and Session Hijacking
Which of the following is a command line packet analyzer similar to GUI-based Wireshark?
tcpdumppacket analyzernetwork sniffingcommand line tools - Question #437Sniffing and Session Hijacking
The configuration allows a wired or wireless network interface controller to pass all traffic it receives to the central processing unit (CPU), rather than passing only the frames...
promiscuous modenetwork interfacepacket sniffingNIC configuration - Question #438Web Server and Web Application Hacking
Which of the following is an extremely common IDS evasion technique in the web world?
IDS evasionunicode encodingweb securityintrusion detection bypass - Question #439Denial of Service and Cryptography
Which of the following is the structure designed to verify and authenticate the identity of individuals within the enterprise taking part in a data exchange?
PKIpublic key infrastructuredigital certificatesidentity authentication - Question #440Web Server and Web Application Hacking
Which of the following is a design pattern based on distinct pieces of software providing application functionality as services to other applications?
SOAservice oriented architectureweb servicesapplication design - Question #441Denial of Service and Cryptography
Which of the following is assured by the use of a hash?
hashingdata integritycryptographyhash functions - Question #442Introduction to Ethical Hacking and Information Security
Which of the following is the greatest threat posed by backups?
backup securitydata protectionencryptionphysical security - Question #443Introduction to Ethical Hacking and Information Security
The chance of a hard drive failure is once every three years. The cost to buy a new hard drive is $300. It will require 10 hours to restore the OS and software to the new hard disk...
SLEAROALErisk calculation - Question #444Web Server and Web Application Hacking
While performing online banking using a Web browser, a user receives an email that contains a link to an interesting Web site. When the user clicks on the link, another Web browser...
CSRFsession hijackingbrowser securityweb attacks - Question #445Web Server and Web Application Hacking
A company's security policy states that all Web browsers must automatically delete their HTTP browser cookies upon terminating. What sort of security breach is this policy attempti...
HTTP cookiessession managementbrowser securitycredential theft - Question #446
Which of the following is considered the best way to protect Personally Identifiable Information (PII) from Web application vulnerabilities?
- Question #447Web Server and Web Application Hacking
Which of the following is one of the most effective ways to prevent Cross-site Scripting (XSS) flaws in software applications?
XSS preventioninput validationoutput encodingweb security - Question #448Introduction to Ethical Hacking and Information Security
An Internet Service Provider (ISP) has a need to authenticate users connecting using analog modems, Digital Subscriber Lines (DSL), wireless data services, and Virtual Private Netw...
RADIUSAAA protocolsnetwork authenticationDIAMETER - Question #449Enumeration and Vulnerability Analysis
To maintain compliance with regulatory requirements, a security audit of the systems on a network must be performed to determine their compliance with security policies. Which one...
vulnerability scannersecurity auditcompliancenetwork assessment - Question #450Social Engineering and Physical Security
Which of these options is the most secure procedure for storing backup tapes?
backup securityoffsite storagephysical securitydata protection - Question #451Sniffing and Session Hijacking
Session splicing is an IDS evasion technique in which an attacker delivers data in multiple, smallsized packets to the target computer, making it very difficult for an IDS to detec...
session splicingIDS evasionWhiskerpacket fragmentation - Question #452Scanning Networks
Which of the following tools can be used for passive OS fingerprinting?
passive OS fingerprintingtcpdumptraffic analysisnetwork reconnaissance - Question #453Scanning Networks
You are the Systems Administrator for a large corporate organization. You need to monitor all network traffic on your local network for suspicious activities and receive notificati...
network-based IDSintrusion detectionnetwork monitoringsecurity alerts