Official Bank 0/200

312-39 (312-39) - EC-Council Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
200 Total Questions
1
Question
What is the process of monitoring and capturing all data packets passing through a given network using different tools?
Options
A DNS Footprinting
B Port Scanning
C Network Sniffing
D Network Scanning
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Which of the following attack can be eradicated by using a safe API to avoid the use of the interpreter entirely?
Options
A File Injection Attacks
B LDAP Injection Attacks
C SQL Injection Attacks
D Command Injection Attacks
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
A large financial institution has identified a sophisticated phishing campaign targeting employees, resulting in unauthorized access to sensitive customer data. The organization already uses a SIEM for log aggregation and alerting, alongside an EDR solution for endpoint visibility. Additionally, they have access to XDR for broader threat detection and XSOAR for security orchestration and automation. As a SOC analyst, you’ve been asked to recommend an integration strategy to improve real-time threat correlation, streamline incident response workflows, and maximize the use of existing tools. Which integration would meet these goals?
Options
A Integrate XDR with SIEM
B Integrate EDR with XSOAR
C Integrate EDR with SIEM
D Integrate XDR with XSOAR
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
David Reynolds, a SOC analyst at a healthcare organization, is investigating suspicious login attempts flagged by the SIEM. To mitigate brute-force risk on targeted endpoints, he collaborates with IT to implement an automatic account lockout policy that temporarily disables accounts after multiple failed login attempts. Within the SOC’s eradication strategy, which category of measures does this action align with?
Options
A Physical security measures
B Authentication and authorization measures
C Host security measures
D Network security measures
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
John, a threat analyst at GreenTech Solutions, wants to gather information about specific threats against the organization. He started collecting information from various sources, such as humans, social media, chat room, and so on, and created a report that contains malicious activity.

Which of the following types of threat intelligence did he use?
Options
A Technical Threat Intelligence
B Operational Threat Intelligence
C Tactical Threat Intelligence
D Strategic Threat Intelligence
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.