Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Pass the ECCouncil CEH v13 312-50v13 Questions and answers with CertsForce

Viewing page 8 out of 16 pages
Viewing questions 106-120 out of questions
Questions # 106:

A Linux server has world-writable cron directories. What can attackers achieve?

Options:

A.

DoS


B.

SQLi


C.

XSS


D.

Persistence


Expert Solution
Questions # 107:

At a government research lab, cybersecurity officer Nikhil is compiling a vulnerability assessment report after scanning the internal subnet. As part of his documentation, he lists the IP addresses of all scanned hosts and specifies which machines are affected. He includes tables categorizing discovered vulnerabilities by type such as outdated software, default credentials, and open ports.

Which section of the vulnerability assessment report is Nikhil working on?

Options:

A.

Findings


B.

Risk Assessment


C.

Supporting Information


D.

Assessment Overview


Expert Solution
Questions # 108:

In your role as a cybersecurity analyst at a large e-commerce company, you have been tasked with reinforcing the firm’s defenses against potential Denial-of-Service (DoS) attacks. During a recent review, you noticed several IP addresses generating excessive traffic, causing an unusually high server load. Inspection of packets revealed that the TCP three-way handshake was never completed, leaving multiple connections in a SYN_RECEIVED state. The intent appears to be saturating server resources without completing connections. Which type of DoS attack is most likely being executed?

Options:

A.

SYN Flood


B.

Smurf Attack


C.

Ping of Death


D.

UDP Flood


Expert Solution
Questions # 109:

Which action would most effectively increase the security of a virtual-hosted web server?

Options:

A.

Implement LAMP architecture


B.

Change IP addresses regularly


C.

Regularly update and patch server software


D.

Move document root to another disk


Expert Solution
Questions # 110:

At Apex Financial Services in Houston, Texas, ethical hacker Javier Ruiz evaluates mobile security practices under the company ' s BYOD policy. He demonstrates that employees often install applications that request access to contact lists, cameras, and messaging services, even though these functions are unrelated to the apps ' intended purpose. This behavior allows a malicious program to harvest sensitive corporate information.

Which security guideline would most directly prevent this issue?

Options:

A.

Use encryption mechanisms to store data


B.

Enforce automatic device locking or implement biometric authentication


C.

Review permissions requested by apps before installing them


D.

Set passwords for apps to restrict others from accessing them


Expert Solution
Questions # 111:

An Android device has an unpatched permission-handling flaw and updated antivirus. What is the most effective undetected exploitation approach?

Options:

A.

SMS phishing


B.

Rootkit installation


C.

Custom exploit with obfuscation


D.

Metasploit payload


Expert Solution
Questions # 112:

Which type of security feature stops vehicles from crashing through the doors of a building?

Options:

A.

Receptionist


B.

Mantrap


C.

Bollards


D.

Turnstile


Expert Solution
Questions # 113:

An attacker is analyzing traffic from a mobile app and finds that sensitive data like session tokens are being transmitted over HTTP instead of HTTPS. The attacker plans to intercept and manipulate the data during transmission. Which vulnerability is the attacker exploiting?

Options:

A.

Security Misconfiguration


B.

Improper SSL Pinning


C.

Insecure Communication


D.

Insufficient Input Validation


Expert Solution
Questions # 114:

A global fintech company receives extortion emails threatening a severe DDoS attack unless ransom is paid. The attacker briefly launches an HTTP flood to demonstrate capability. The attack uses incomplete POST requests that overload application-layer resources, causing performance degradation. The attacker reinforces their demand with a second threat email. What type of DDoS attack is being carried out?

Options:

A.

RDDoS attack combining threat and extortion


B.

DRDoS attack using intermediaries


C.

Recursive GET flood disguised as crawling


D.

Pulse wave attack with burst patterns


Expert Solution
Questions # 115:

A smart building management company in Seattle, Washington deploys wireless door sensors and badge-based access systems throughout its corporate headquarters. During a security assessment, an analyst captures legitimate radio transmissions between employee access badges and the entry control units.

Later that evening, without modifying or decrypting the original communication, the analyst retransmits the previously captured signal toward a secured entrance. The access control system accepts the transmission as valid and unlocks the door, even though the legitimate badge is not present.

Determine the attack technique demonstrated in this assessment.

Options:

A.

BlueBorne Attack


B.

Replay Attack


C.

Rolling Code Attack


D.

Sybil Attack


Expert Solution
Questions # 116:

Alice, a software developer, digitally signs an email contract and sends it to Bob. Later, a dispute arises and Alice claims she never sent the agreement. However, Bob produces the email with Alice ' s unique digital signature, which unequivocally links the message to her. In information security terms, what principle is illustrated by Bob ' s ability to prove Alice ' s authorship of the email?

Options:

A.

Confidentiality


B.

Integrity


C.

Non-Repudiation


D.

Availability


Expert Solution
Questions # 117:

At a biomedical analytics firm in Raleigh, North Carolina, security consultant Marcus Ellison was reviewing exposed services on a legacy Linux host located in a screened subnet. While mapping available services, he observed that the machine was responding to time synchronization queries from multiple internal systems.

Curious whether the service might reveal additional intelligence, Marcus issued targeted queries against the time service and received responses that exposed internal client addresses and system identifiers interacting with it. The information provided unexpected visibility into internal network structure without requiring authentication.

From the available options, what enumeration technique is illustrated in this scenario?

Options:

A.

NFS Enumeration


B.

NetBIOS Enumeration


C.

SNMP Enumeration


D.

NTP Enumeration


Expert Solution
Questions # 118:

A multinational healthcare provider headquartered in Boston, Massachusetts relies on federated authentication to allow employees to access multiple cloud-hosted applications using a single sign-on portal. During an authorized red team engagement, a security consultant gains access to the organization ' s identity infrastructure and extracts signing material used in trust relationships between the internal identity provider and external cloud services. Using this material, the consultant generates authentication responses that grant administrative-level access to several cloud applications without interacting with user credentials or triggering multifactor authentication challenges. The access appears legitimate within the cloud service logs. Which cloud attack technique best aligns with this behavior?

Options:

A.

Golden SAML Attack


B.

Man-in-the-Cloud (MITC) Attack


C.

Cloud Hopper Attack


D.

Living off the Cloud (LotC) Attack


Expert Solution
Questions # 119:

A new wireless client is configured to join a 802.11 network. This client uses the same hardware and software as many of the other clients on the network. The client can see the network, but cannot connect. A wireless packet sniffer shows that the Wireless Access Point (WAP) is not responding to the association requests being sent by the wireless client. What is a possible source of this problem?

Options:

A.

The WAP does not recognize the client ' s MAC address


B.

The client cannot see the SSID of the wireless network


C.

The wireless client is not configured to use DHCP


D.

Client is configured for the wrong channel


Expert Solution
Questions # 120:

A U.S.-based online securities trading firm in New York is reviewing its transaction authentication process. The security team confirms that each transaction is processed by first generating a hash of the transaction data. The hash value is then signed using the sender ' s private key. During verification, the recipient uses the corresponding public key to validate the signature before approving the transaction. The system documentation specifies that the same algorithm supports encryption, digital signatures, and key exchange mechanisms within the organization ' s secure communications infrastructure. Which encryption algorithm is being used in this implementation?

Options:

A.

ElGamal


B.

Diffie-Hellman


C.

DSA


D.

RSA


Expert Solution
Viewing page 8 out of 16 pages
Viewing questions 106-120 out of questions