EC-COUNCIL 312-50v8 Actual Free Exam Questions & Community Discussion
You are attempting to map out the firewall policy for an organization. You discover your target system is one hop beyond the firewall. Using hping2, you send SYN packets with the exact TTL of the target system starting at port 1 and going up to port 1024. What is this process known as?
Correct Answer: A
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
How do employers protect assets with security policies pertaining to employee surveillance activities?
Correct Answer: C
Vote an answer
_________ ensures that the enforcement of organizational security policy does not rely on voluntary web application user compliance. It secures information by assigning sensitivity labels on information and comparing this to the level of security a user is operating at.
Correct Answer: C
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Cyber Criminals have long employed the tactic of masking their true identity. In IP spoofing,
an attacker gains unauthorized access to a computer or a network by making it appear that a malicious message has come from a trusted machine, by "spoofing" the IP address of that machine.
How would you detect IP spoofing?
an attacker gains unauthorized access to a computer or a network by making it appear that a malicious message has come from a trusted machine, by "spoofing" the IP address of that machine.
How would you detect IP spoofing?
Correct Answer: A
Vote an answer
Most NIDS systems operate in layer 2 of the OSI model. These systems feed raw traffic into a detection engine and rely on the pattern matching and/or statistical analysis to determine what is malicious. Packets are not processed by the host's TCP/IP stack allowing the NIDS to analyze traffic the host would otherwise discard. Which of the following tools allows an attacker to intentionally craft packets to confuse pattern-matching NIDS systems, while still being correctly assembled by the host TCP/IP stack to render the attack payload?
Correct Answer: B
Vote an answer
Explanation: Only visible for EduDump members. You can sign-up / login (it's free).
Which statement is TRUE regarding network firewalls preventing Web Application attacks?
Correct Answer: B
Vote an answer
Which of the following business challenges could be solved by using a vulnerability scanner?
Correct Answer: C
Vote an answer
You are performing a port scan with nmap. You are in hurry and conducting the scans at the fastest possible speed. However, you don't want to sacrifice reliability for speed. If stealth is not an issue, what type of scan should you run to get very reliable results?
Correct Answer: A
Vote an answer
A consultant is hired to do physical penetration testing at a large financial company. In the first day of his assessment, the consultant goes to the company`s building dressed like an electrician and waits in the lobby for an employee to pass through the main access gate,
then the consultant follows the employee behind to get into the restricted area. Which type of attack did the consultant perform?
then the consultant follows the employee behind to get into the restricted area. Which type of attack did the consultant perform?
Correct Answer: D
Vote an answer
When setting up a wireless network, an administrator enters a pre-shared key for security. Which of the following is true?
Correct Answer: D
Vote an answer
Which of the following is optimized for confidential communications, such as bidirectional voice and video?
Correct Answer: D
Vote an answer
0
0
0
10
