Browse all practice questions for the Certified Ethical Hacker Certification (CEHv10) Practice Test. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Certified Ethical Hacker Certification (CEHv10) Practice Test course image
All questions

These questions are part of the practice quiz. Start practicing

  • What is an exploit?
  • Which type of information gathering is considered passive?
  • What defines an out-of-band SQL injection attack?
  • What is the primary purpose of establishing User Behavior Analytics in an organization?
  • What is the purpose of a security policy?
  • What does Google hacking involve?
  • Which layer do circuit level gateway firewalls operate on?
  • Which of the following attacks primarily targets financial transactions using a trojan?
  • What does the process of privilege escalation exploit?
  • What information do software keyloggers primarily capture?
  • In networking, what is the Internet DMZ zone used for?
  • What approach do proprietary methodologies typically follow?
  • What does SSDP stand for in the context of network scanning?
  • What does stateful multilayer inspection in firewalls combine?
  • Which term describes operators used in Google hacking?
  • What is a key ethical guideline for conducting penetration tests?
  • What is a key component of incident management?
  • What technique involves observing a person's screen or keyboard to obtain sensitive information?
  • Which of the following is a technique commonly used to leak data by insiders?
  • What is the process of capturing data packets on a network called?
  • What does EAP stand for in the context of WPA2-Enterprise?
  • Which type of attack involves gaining access through a compromised device to reach another network?
  • In how many layers does stateful multilayer inspection evaluate packets?
  • What distinguishes white hats from black hats in ethical hacking?
  • Which of the following is NOT a common attack vector?
  • Which of the following is NOT a type of penetration testing?
  • What does the operation in access control terminology refer to?
  • What information does IP Geolocation help to identify?
  • What is the function of TKIP in WPA?
  • What is the primary function of malware in cyber attacks?
  • Why do hackers prioritize targets with high hack value?
  • Which of the following is NOT a part of the access control model?
  • How do ethical hackers utilize the concept of hack value?
  • What role do network diagrams play in cybersecurity?
  • What is NOT a typical function of data recovery?
  • What is phishing primarily used for in cyber attacks?
  • What is the result of successfully compromising a Wi-Fi network?
  • Which of the following best describes the behavior of spyware?
  • What is the primary goal of data recovery?
  • What is symmetric encryption characterized by?
  • What is meant by the term 'functionality' in the context of systems?
  • What vulnerability does WEP primarily suffer from?
  • Which of the following roles primarily engages in criminal activities like website shutdowns?
  • Considering hack value, what might motivate a hacker besides financial gain?
  • What internal threat involves employees copying information onto external storage?
  • What characterizes a virus in terms of malicious software?
  • What is an important action in managing smurf attacks?
  • In terms of cybersecurity, what does phishing refer to?
  • What does User Behavior Analytics (UBA) primarily aim to do?
  • Which type of attack primarily focuses on exploiting programming mistakes that allow unauthorized actions?
  • Which type of hacker relies entirely on publicly available information?
  • What do bots used by hackers typically allow them to do?
  • Which of the following best describes penetration testing?
  • What does cryptanalysis aim to achieve in cybersecurity?
  • What is the primary purpose of ethical hacking?
  • Why are security policies important in organizations?
  • Which of the following is a function of enterprise directory services?
  • Which scanning technique focuses on IP networks specifically?
  • What does passive footprinting involve?
  • Which backup type only saves changes made since the last backup?
  • Which of the following represents a type of high-interaction honeypot?
  • What is one method used to gain access to a target's operating system?
  • What type of target might be deemed high risk, influencing a hacker's decision?
  • What kind of information might querying LDAP reveal?
  • What is a defining feature of symmetric encryption?
  • What does the term "improper input validation" refer to?
  • What type of information can attackers acquire through IP Geolocation?
  • In a dictionary attack, what is the primary method used to crack passwords?
  • Which step follows the detection and analysis in the incident management process?
  • What are the three categories of scanning techniques?
  • What is the purpose of a device driver keylogger?
  • What does the term "active probing assaults" refer to in ethical hacking?
  • What is the goal of an availability attack?
  • What characterizes active online attacks?
  • Which element of information security ensures the validity and protection of data?
  • What is the primary objective of the HIPAA enforcement rule?
  • Which of the following statements about symmetric encryption is true?
  • Which of the following describes administrative security policies?
  • What does passive sniffing allow attackers to do in a network using hubs?
  • What is data leakage?
  • What is encompassed in 'Information Assurance'?
  • What does list scanning primarily target?
  • What problem does the Meltdown vulnerability present?
  • What is one common cause of security misconfiguration vulnerabilities?
  • When assessing the value of a hack, what factor is most significant to hackers?
  • Which threat type involves an unauthorized individual gaining access to a network?
  • What is a fundamental characteristic of an integrity attack?
  • A man-in-the-middle attack primarily interferes with what aspect of communication?
  • What is a key characteristic of advanced persistent threats?
  • Which network zone is dedicated to internal network management?
  • What defines an integrity attack in a wireless network?
  • Why is the concept of NAT important for network security?
  • What is the main goal of a confidentiality attack?
  • How does UDP scanning determine whether a port is closed?
  • How does a Packet Filtering Firewall determine whether to drop a packet?
  • During which phase do hackers attempt to hide their activities on the system?
  • In a command and control warfare context, what is a primary objective?
  • What role does a Reference Monitor play in access control?
  • What is the correct term for the ability to track user actions within a system?
  • What is an Offline Attack in the context of WPA/WPA2 encryption?
  • What kind of effort do hackers invest when they determine something has high 'hack value'?
  • What is the primary function of spyware?
  • Which type of vulnerability assessment specifically evaluates the security of software applications?
  • What is a characteristic of DoS attacks?
  • In the post-attack phase, what is a key activity that is performed by the tester?
  • What defines ransomware?
  • How can viruses spread to other computers?
  • What is a primary outcome when using a keylogger?
  • Which of the following best describes the purpose of network accounting?
  • What is ARP spoofing primarily used for?
  • What is the primary purpose of UDP scanning in network security?
  • What does malware analysis primarily involve?
  • What does passive footprinting help avoid when collecting information?
  • What does an access control attack aim to bypass?
  • What is the main purpose of a botnet?
  • Which of the following best defines eavesdropping?
  • What is an XML External Entity attack?
  • What motivates black hat hackers to exploit security vulnerabilities?
  • Which aspect of risk management involves prioritizing risks?
  • Which of the following best describes website mirroring?
  • What technique is used by an attacker in MAC spoofing?
  • What is an example of a detective control?
  • Which step is NOT part of a data backup strategy?
  • What does the Address Resolution Protocol (ARP) do?
  • What characterizes a grey box penetration test?
  • What is the purpose of Public Key Infrastructure (PKI)?
  • What type of hacker is typically motivated by political or religious beliefs?
  • What activity is NOT part of the target acquisition phase in penetration testing?
  • Which risk level indicates a moderate concern that requires attention?
  • Which of the following is a common use for packet sniffing?
  • What characterizes unannounced testing in cybersecurity?
  • What does static malware analysis involve?
  • What does an XSS attack aim to achieve?
  • What is the primary function of antivirus software?
  • What does Role Based Access Control (RBAC) provide?
  • What makes passive sniffing effective in certain network environments?
  • During an HTTP Response Splitting attack, what does the attacker inject into the response headers?
  • What is the primary benefit of using network diagrams in security assessments?
  • Which technique uses dictionary or cracking tools against WPA encryption?
  • How many types of encryption are there?
  • What is passive banner grabbing primarily used for?
  • How are hackers characterized in the context of ethical hacking?
  • What is one of the main weaknesses of NetBIOS that hackers exploit?
  • How does active sniffing work in a switched network environment?
  • Which of the following is NOT an objective of risk management?
  • What is the goal of DNS enumeration in ethical hacking?
  • What does a backup recovery test help to verify?
  • What is the strategy behind Advanced Persistent Threats?
  • SQL injection and cross-site scripting are examples of which type of threat?
  • What is the main purpose of security testing methodology?
  • What is cryptography most commonly used for?
  • What type of privilege escalation involves acquiring privileges of the same level?
  • What is the goal of an Information Security Management Program?
  • What is the primary function of a rootkit?
  • What is the purpose of a Whois query?
  • What is an example of a technique to crack WPA/WPA2 encryption?
  • What are the three classifications of hardware keyloggers?
  • Which technique can be used to bypass IDS and firewall systems?
  • What is a characteristic of a SYN flood attack?
  • Which of the following is NOT considered a common network threat?
  • What describes vertical privilege escalation?
  • Which term describes the set of policies and procedures governing data security?
  • What does the last character of a NetBIOS name represent?
  • What is the first step in the wireless hacking methodology?
  • What is the primary goal of network footprinting in ethical hacking?
  • What does computer-based social engineering primarily involve?
  • What are Trojans typically disguised as?
  • What characterizes a zero-day attack?
  • Which component is NOT part of a hardware keylogger?
  • What type of attack involves observing a user's actions to obtain sensitive information?
  • What does doxing involve?
  • Which attack method can be employed to crack WPA encryption?
  • Which category of password cracking involves using offline tools to guess passwords?
  • What are the three main types of social engineering?
  • Which type of honeypot is designed for production environments?
  • What is the purpose of a honeypot in network security?
  • Which aspect does vulnerability assessment concentrate on?
  • What technique involves disabling system features to prevent tracking of activities?
  • Which protocol does WEP use to encrypt data?
  • Which of the following items is NOT typically found on a device enumeration sheet?
  • What type of attack is characterized by having some information about a password, such as its length and content?
  • WPA is an acronym for which security protocol?
  • What does application threat refer to?
  • What advantage does User Behavior Analytics (UBA) provide?
  • Which of the following is NOT classified as a host threat type?
  • Which warfare classification involves the use of technology to achieve military objectives?
  • What is the purpose of a vulnerability assessment?
  • In cybersecurity discussions, what does 'high hack value' commonly indicate?
  • What process is involved in confirming the identity of a user accessing a network?
  • What does Steganography primarily aim to achieve in information security?
  • What does ICMP echo scanning accomplish?
  • What does mobile-based social engineering primarily utilize?
  • What is NOT a purpose of penetration testing?
  • What does a ping sweep help a hacker to determine?
  • In the context of security operations, what is the role of the Blue Team?
  • What is the best definition of active assessment in vulnerability evaluations?
  • What is unique about thick whois data?
  • What are the two operation modes of WPA2?
  • What are the stages in the five stages of hacking?
  • What is the purpose of penetration testing in cybersecurity?
  • Which type of traffic is actively injected into a LAN to conduct active sniffing?
  • Which of the following is a stage within the hacking process?
  • Which of these factors could lower a target's hack value?
  • Which type of attack involves breaking into clouds to steal user information?
  • Which action involves deleting the logged activities of an attacker?
  • What kind of firewall filters packets based on rules applied to their source and destination?
  • What information can NTP enumeration provide to hackers?
  • What is a keylogger primarily designed to do?
  • What is a hash injection attack primarily targeting?
  • What is the primary characteristic of a management zone?
  • What does the term 'hack value' refer to in the context of ethical hacking?
  • Which type of threat involves a malicious program disrupting a service?
  • What activates a Trojan's malicious code?
  • What is the main purpose of a DDoS attack?
  • Which of the following is NOT one of the five major elements of information security?
  • What does Thin Whois provide?
  • Which of the following is NOT a type of software keylogger?
  • What does grey box testing combine?
  • What is the primary function of a hypervisor-based keylogger?
  • How does ARP obtain MAC addresses of devices on a network?
  • In the realm of hacking, the decision to pursue a target often relies on what criteria?
  • When exploiting vulnerabilities, it is important to pay particular attention to which aspect?
  • Which type of firewall is implemented as a physical device?
  • What cryptographic method is utilized to create a digital signature?
  • What does a demilitarized zone (DMZ) provide between external and internal networks?
  • What can be a result of TCP/IP hijacking?
  • Which type of attack allows extraction of information by injecting true/false queries?
  • What is the first step in a password guessing attack?
  • Which of the following reflects user data monitoring in UBA?
  • What is the primary aim of an injection attack?
  • What is the primary functionality of a kernel keylogger?
  • Which encryption standard is utilized by WPA2?
  • What is the ultimate goal for hackers when they prioritize high hack value?
  • What is the purpose of compensating controls in cybersecurity?
  • What is the primary goal of the pre-attack phase in penetration testing?
  • In double blind testing, what do both the tester and target lack?
  • Which method is not typically used in cryptanalysis?
  • What does DNS footprinting involve?
  • What defines Advanced Persistent Threats (APTs)?
  • What can website mirroring help with, besides offline browsing?
  • Which attack involves flooding a target with a large number of ICMP ECHO request packets?
  • What does a TCP connect scan determine?
  • What type of attack does phishing typically involve?
  • What is one of the objectives of footprinting in cybersecurity?
  • Identity Access Management (IAM) ensures which of the following?
  • In access control terminology, what does the term 'Subject' refer to?
  • Which of the following is NOT one of the three important components of every system?
  • What is the main method used by the Slowloris attack?
  • Where are MAC addresses and their virtual LAN parameters stored?
  • What is often the target of hacktivist attacks?
  • What is the effect of an ICMP port unreachable packet in a UDP scan?
  • What type of encryption does WPA2-Personal use?
  • In a password guessing attack, how should passwords be organized prior to testing?
  • Which attack involves exploiting vulnerabilities in the UPnP protocol?
  • Which type of threats are included in physical security categories?
  • What is the role of technical controls in network security?
  • What is the main goal of incident management in cybersecurity?
  • Which organization is part of the Regional Internet Registries?
  • What is defined as an attempt to gain unauthorized access to a network?
  • What is a key characteristic of suicide hackers?
  • Which of the following best characterizes proprietary methodologies?
  • What is meant by attack vectors in cybersecurity?
  • What is one consequence of a confidentiality attack?
  • Which of the following best defines an attack on sensitive information?
  • Which of the following characterizes a Worm in cybersecurity?
  • What does integrity ensure in information security?
  • Which types of security policies are mentioned?
  • Network zoning is primarily used for?
  • What is the primary function of an application keylogger?
  • Which type of warfare involves infecting systems to achieve political goals?
  • What does FISMA primarily protect?
  • What is one of the problems that can cause a security misconfiguration?
  • Which protocol is involved in the Shared Key Authentication process?
  • Which of these best describes the function of CVSS?
  • What does non-repudiation ensure in a communication process?
  • What is the primary characteristic of passive vulnerability scanning?
  • Which of the following is NOT an application threat type?
  • Recovery controls are implemented after what event?
  • What is the main purpose of threat modeling in application security?
  • What type of assessment looks at the overall security of a network from outside an organization?
  • Which protocol allows an attacker to exploit a vulnerability due to unresolved name queries?
  • What type of attack is categorized under "Active online attacks" in password cracking?
  • What defines session hijacking?
  • What does the Common Vulnerability Scoring System (CVSS) provide to organizations?
  • What process does the Identity Management Module in IAM focus on?
  • What is the primary goal of a replay attack?
  • Which of the following is NOT a way of performing penetration testing?
  • LDAP is an acronym for what protocol?
  • What does the user management component include?
  • Which keylogger type operates at a lower level than standard application keyloggers?
  • Which of the following best describes an Intrusion Detection System (IDS)?
  • What is the role of the Access Management Module in Identity Access Management?
  • What do technical security policies define?
  • The Sarbanes Oxley Act mainly aims to protect which group?
  • Which of the following is NOT a goal of EISA?
  • Who are state-sponsored hackers typically employed by?
  • What is a necessary step to effectively break WEP encryption?
  • What is a potential impact of an ICMP flood attack?
  • What can impact a hacker's perception of a target's hack value?
  • What is a worm in the context of cybersecurity?
  • What are external data leakage threats primarily concerned with?
  • What are the two types of sniffing techniques?
  • Active vulnerability scanning involves which of the following?
  • What does the term "dumpster diving" refer to in the context of non-electronic attacks?
  • What does a MAC address represent in a network?
  • What is a vulnerability in the context of information security?
  • In-band SQL injection is characterized by:
  • What is TCP/IP hijacking primarily aimed at?
  • What technique do stealth scans utilize to bypass firewalls?
  • What best describes a web cache poisoning attack?
  • Which of the following is a common method of attack used in a rule-based attack?
  • Which of the following is an example of a non-electronic attack?
  • What does Rules of Engagement (ROE) specify in penetration testing?
  • In the context of penetration testing, what is announced testing?
  • What is the aim of an authentication attack?
  • What is the result of exploiting a vulnerability that the vendor does not know about?
  • What does the Digital Millennium Copyright Act (DMCA) primarily address?
  • What is the purpose of brute-force WPA key attacks?
  • In a source routing attack, what role does the attacker play?
  • What does data loss typically refer to?
  • What type of information can be collected during a security incident analysis?
  • Which of the following is a method attackers may use to collect IVs for breaking WEP encryption?
  • What is the main risk of insecure deserialization?
  • What is a primary function of preventive controls in information security?
  • What does SQL Injection primarily target?
  • What type of attack involves injecting scripts into web pages?
  • What role does an IDS play in network security?
  • What skill do ethical hackers primarily use to enhance security?
  • What is usually included in the Rules of Engagement for penetration testing?
  • What motivates hacktivists to break into systems?
  • What is the main function of bots in a botnet?
  • In sensitive data exposure cases, what is a major contributing factor?
  • Which measure is recommended for safeguarding computer equipment when not in use?
  • What is the main purpose of ICMP scanning in network security?
  • What is the primary purpose of a website defacement attack?
  • What is the aim of launching an attack in the wireless hacking methodology?
  • What is the primary purpose of DNS poisoning?
  • Which rule of HIPAA ensures the confidentiality and integrity of health information?
  • What is the objective of a Denial of Service (DoS) attack?
  • What mechanism does a Man-in-the-Browser attack primarily exploit?
  • What is a common tactic used by ransomware?
  • What does cracking passwords typically involve?
  • Which is a typical step in preventing exploitations during security testing?
  • Which item is NOT typically covered under a security policy?
  • Discretionary Access Control (DAC) allows users to:
  • What is one of the primary objectives of system hacking?
  • What potential risk does vulnerability pose to a system?
  • Which of the following best describes a risk in cybersecurity?
  • Which type of control detects violations in security or attempts of intrusion?
  • What is the aim of enumeration in network security?
  • What is a primary function of a packet sniffer?
  • What technique does malware commonly utilize to achieve its objectives?
  • Which of the following helps improve the security of an application?
  • In access control, what is the process of establishing user identity called?
  • What might a hacker consider low hack value?
  • How is risk defined in the context of cybersecurity?
  • What does a protocol attack primarily aim to do?
  • What is the primary technique used in ARP poisoning?
  • In static malware analysis, what is primarily examined?
  • Which type of backup restores the entire data set to its last full form?
  • Which classification of attack involves manipulating the operating system?
  • What is the primary cause of insider threats within an organization?
  • Which of the following best describes Enterprise Information Security Architecture (EISA)?
  • What characterizes a distributed network attack?
  • What does a DNS server hijacking attack accomplish?
  • How do attackers exploit web application vulnerabilities?
  • Which of the following best differentiates between a security audit and penetration testing?
  • What is reconnaissance in the context of hacking?
  • What does access control help to secure against?
  • What is the primary goal of incident management process preparation?
  • What characterizes a Smurf attack?
  • What is one of the activities involved in the post-attack phase?
  • What is evaluated during a risk assessment?
  • What is a key feature of hardware keyloggers?
  • What does privilege escalation allow an attacker to do?
  • Open System Authentication (OSA) is utilized in the context of which type of network access?
  • Which of the following describes a scenario with high hack value?
  • Which of the following practices helps in maintaining industry standards and regulations during penetration testing?
  • What does the ISO/IEC 27001:2013 standard focus on?
  • Which of the following is NOT considered a preventative control?
  • What protocol does WPA2-Enterprise use for authentication?
  • What is the purpose of website footprinting?
  • Which of the following is typically NOT a characteristic of a man-in-the-middle attack?
  • What is one process necessary for achieving information assurance?
  • Which of the following is a result of proper access control implementation?
  • Which component is essential for administrative services related to user management?
  • What does manipulating logs prevent?
  • What is the primary goal of a wire sniffing attack?
  • What is the main goal of physical security measures?
  • What is one of the features of Identity Access Management systems?
  • Which vulnerability allows attackers to access sensitive information from a program's memory space?
  • What is the purpose of a fragmentation attack?
  • Network scanning is used primarily for what purpose?
  • What type of attack is characterized by preventing legitimate users from accessing resources?
  • Which action is associated with computer-based social engineering?
  • What does the term 'Host Threat' refer to?
  • What is the primary objective of a Security Incident and Event Management (SIEM) system?
  • What defines active type footprinting in ethical hacking?
  • Who are considered script kiddies?
  • What is the main purpose of NTP enumeration?
  • Which phase follows the reconnaissance phase in a penetration test?
  • Why is network zoning essential for organizations?
  • What does access control aim to restrict within a system or network?
  • What does sensitive data exposure refer to?
  • The NVD includes databases related to what aspects of cybersecurity?
  • What is a characteristic of blind testing in black box testing?
  • What kind of attacks involve the use of distributed processing to retrieve passwords from hashes?
  • Which of the following best describes the purpose of conducting penetration testing?
  • What is the primary purpose of Network Address Translation (NAT)?
  • What is the main characteristic of a blind SQL injection attack?
  • Which aspect of WEP's security is primarily compromised?
  • Which of the following is an example of session hijacking?
  • What is the consequence of a vast number of incomplete connections in a SYN flood attack?
  • Which of the following describes the behavior of script kiddies?
  • In a Shared Key Authentication process, what does the access point (AP) send to the client after receiving the authentication request?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy