Official Bank 0/528

Ethical Hacking and Countermeasures (CEHv7) (312_50v7) - EC-Council Exam Questions

Last updated on June 20, 2026

97% Exam Compliance
528 Total Questions
1
Question
How can rainbow tables be defeated?
Options
A Use of non-dictionary words
B Lockout accounts under brute force password cracking attempts
C All uppercase character passwords
D Password salting
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

2
Question
Clark, a professional hacker, attempted to perform a Btlejacking attack using an automated tool, Btlejack, and hardware tool, micro:bit. This attack allowed Clark to hijack, read, and export sensitive information shared between connected devices. To perform this attack, Clark executed various btlejack commands. Which of the following commands was used by Clark to hijack the connections?
Options
A btlejack -c any
B btlejack -f 0x9c68fd30 -t -m 0x1 fffffffff
C btlejack -d /dev/ttyACM0 -d /dev/ttyACM2 -s
D btlejack-f 0x129f3244-j
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

3
Question
Which mode of IPSec should you use to assure security and confidentiality of data within the same LAN?
Options
A ESP transport mode
B AH Tunnel mode
C AH permiscuous
D ESP confidential
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

4
Question
“........is an attack type for a rogue Wi-Fi access point that appears to be a legitimate one offered on the premises, but actually has been set up to eavesdrop on wireless communications. It is the wireless version of the phishing scam. An attacker fools wireless users into connecting a laptop or mobile phone to a tainted hot-spot by posing as a legitimate provider. This type of attack may be used to steal the passwords of unsuspecting users by either snooping the communication link or by phishing, which involves setting up a fraudulent web site and luring people there.” Fill in the blank with appropriate choice.
Options
A Collision Attack
B Signal Jamming Attack
C Sinkhole Attack
D Evil Twin Attack
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

5
Question
Henry is a penetration tester who works for XYZ organization. While performing enumeration on a client organization, he queries the DNS server for a specific cached DNS record. Further, by using this cached record, he determines the sites recently visited by the organization's user. What is the enumeration technique used by Henry on the organization?
Options
A DNS cache snooping
B DNS cache poisoning
C DNS SEC zone walking
D DNS zone walking
Discussion (0 comments)

to join the discussion

Community Discussion

No discussions yet. Be the first to ask!

Finish Practice?

Are you sure you want to finish? This will end your practice session.