Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the ECCouncil CEH v13 312-50v13 Questions and answers with CertsForce

Viewing page 1 out of 16 pages
Viewing questions 1-15 out of questions
Questions # 1:

Systems are communicating with unknown external entities, raising concerns about exfiltration or malware. Which strategy most directly identifies and mitigates the risk?

Options:

A.

Aggressive zero-trust shutdown


B.

Deep forensic analysis


C.

Behavioral analytics profiling normal interactions


D.

Employee awareness training


Expert Solution
Questions # 2:

During a cloud security assessment, you discover a former employee still has access to critical cloud resources months after leaving. Which practice would most effectively prevent this?

Options:

A.

Real-time traffic analysis


B.

Regular penetration testing


C.

Enforcing timely user de-provisioning


D.

Multi-cloud deployment


Expert Solution
Questions # 3:

Which of the following best describes an attack that altered the contents of two critical files?

Options:

A.

Availability


B.

Authentication


C.

Confidentially


D.

Integrity


Expert Solution
Questions # 4:

You are working as a threat intelligence analyst for a fintech startup that recently discovered a spike in credential stuffing attempts against its admin panel. The security team believes this may be due to leaked internal files circulating on underground forums. You are tasked with investigating potential exposure on the dark web without directly interacting with any service or forum. You decide to use advanced search filters to identify documents hosted on hidden services that may contain sensitive access details. The team suspects these documents might include account-related keywords in their titles.

Which of the following search queries would best support this investigation?

Options:

A.

filetype:pdf intitle: " admin access " site:onion


B.

filetype:docx intitle: " login credentials "


C.

filetype:pdf intitle: " secure login " site:onion


D.

filetype:docx intitle: " user accounts " site:onion


Expert Solution
Questions # 5:

During a penetration test at a healthcare provider in Phoenix, ethical hacker Sofia crafts a stream of IP packets with manipulated offset fields and overlapping payload offsets so that the records server ' s protocol stack repeatedly attempts to reconstruct the original datagrams. The repeated reconstruction attempts consume CPU and memory, causing the system to crash intermittently and disrupt patient portal access, even though overall bandwidth remains normal. Packet analysis shows deliberately malformed offsets that trigger processing errors rather than a simple flood of traffic.

Which type of attack is Sofia most likely simulating?

Options:

A.

Fragmentation Attack


B.

ICMP Flood


C.

Teardrop Attack


D.

Ping of Death


Expert Solution
Questions # 6:

As part of a penetration test for a financial firm’s smart headquarters in Denver, Colorado, ethical hacker Jordan Lee begins evaluating the IoT infrastructure responsible for lighting, HVAC, and badge-controlled access. Jordan documents details such as device models, manufacturer names, firmware versions, and supported protocols like Zigbee and BLE. This information is used to understand the device ecosystem. Which step of the IoT hacking methodology is being carried out in this phase?

Options:

A.

Information gathering


B.

Launch attacks


C.

Vulnerability scanning


D.

Gain remote access


Expert Solution
Questions # 7:

Which tool dumps Windows hashes?

Options:

A.

Mimikatz


B.

John


C.

Hydra


D.

Aircrack-ng


Expert Solution
Questions # 8:

During a high-stakes engagement, a penetration tester abuses MS-EFSRPC to force a domain controller to authenticate to an attacker-controlled server. The tester captures the NTLM hash and relays it to AD CS to obtain a certificate granting domain admin privileges. Which network-level hijacking technique is illustrated?

Options:

A.

Hijacking sessions using a PetitPotam relay attack


B.

Exploiting vulnerabilities in TLS compression via a CRIME attack


C.

Stealing session tokens using browser-based exploits


D.

Employing a session donation method to transfer tokens


Expert Solution
Questions # 9:

Repeated failed login attempts are followed by a sudden surge in outbound data traffic from a critical server. What should be your initial course of action?

Options:

A.

Audit all outbound traffic and analyze destination IPs


B.

Immediately disconnect the server from the network


C.

Perform real-time monitoring and log analysis to understand the activity


D.

Change server credentials and force password resets


Expert Solution
Questions # 10:

During an internal security review at a transportation authority in Columbus, Ohio, a red team analyst positioned himself on the same local network segment as several domain-joined administrative workstations. Over several hours, he recorded authentication exchanges as legitimate users performed their routine logon activities across the network.

He later analyzed the captured traffic to recover valid credentials associated with privileged accounts. Based on the attacker’s actions, how should this password attack be classified?

Options:

A.

Passive Online Attack


B.

Non-Electronic Attack


C.

Active Online Attack


D.

Offline Attack


Expert Solution
Questions # 11:

During a penetration test, an analyst repeatedly initiates TCP connections to a target host and records the sequence numbers returned in the SYN/ACK responses. By examining predictable or incremental patterns in these values, the analyst attempts to infer characteristics of the underlying operating system.

What OS fingerprinting attribute is being analyzed in this scenario?

Options:

A.

TCP Timestamp Analysis


B.

TCP Window Size


C.

Initial Sequence Number (ISN)


D.

Time to Live (TTL)


Expert Solution
Questions # 12:

As part of an internal security assessment at First Union Bank in Chicago, Rachel Morgan is evaluating whether unauthorized packet capture tools are operating within the loan processing segment of the network. During traffic observation, she notices behavior suggesting that a particular host may be processing frames beyond its intended destination scope.

To verify whether the network interface is accepting traffic not explicitly addressed to it, Rachel decides to transmit specially crafted packets designed to provoke an abnormal response from a system operating in promiscuous mode.

Which detection technique should Rachel use to confirm the presence of a sniffer?

Options:

A.

DNS method by monitoring reverse DNS lookup traffic


B.

Sniffer detection using an NSE script to check for promiscuous mode


C.

Ping method by sending packets with an incorrect MAC address


D.

ARP method by sending non-broadcast ARP requests


Expert Solution
Questions # 13:

At a power distribution facility in Phoenix, Arizona, ethical hacker Sameer Das is performing an OT security assessment. He demonstrates that a programmable controller accepts modifications delivered over the network without checking the origin or cryptographic validity of the package. By uploading altered instructions, he changes how the controller processes commands during operations. Which IoT/OT threat best represents this technique?

Options:

A.

Firmware update attack


B.

Forged malicious device


C.

Remote access using backdoor


D.

Exploit kits


Expert Solution
Questions # 14:

A penetration tester evaluates an industrial control system (ICS) that manages critical infrastructure. The tester discovers that the system uses weak default passwords for remote access. What is the most effective method to exploit this vulnerability?

Options:

A.

Perform a brute-force attack to guess the system ' s default passwords


B.

Execute a Cross-Site Request Forgery (CSRF) attack to manipulate system settings


C.

Conduct a denial-of-service (DoS) attack to disrupt the system temporarily


D.

Use the default passwords to gain unauthorized access to the ICS and control system operations


Expert Solution
Questions # 15:

Who are “script kiddies” in the context of ethical hacking?

Options:

A.

Highly skilled hackers who write custom scripts


B.

Novices who use scripts developed by others


C.

Ethical hackers using scripts for penetration testing


D.

Hackers specializing in scripting languages


Expert Solution
Viewing page 1 out of 16 pages
Viewing questions 1-15 out of questions