312-38 Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :May 29, 2026

EC-COUNCIL 312-38 Online Questions & Answers

  • Question 351:

    You are Network Administrator Investment Bank. You're worried about people breeching network and can steal information before you can detect and shut down access. Which of the following is the best way to deal with this issue?

    A. To implement a strong firewall.
    B. Implement a honey pot.
    C. To implement a strong password policy.
    D. None
    E. To implement the network is based on antivirus.

  • Question 352:

    You work as the network administrator for uCertify Inc. The company has planned to add the support for IPv6 addressing. The initial phase deployment of IPv6 requires support from some IPv6-only devices. These devices need to access servers that support only IPv4. Which of the following tools would be suitable to use?

    A. Multipoint tunnels
    B. NAT-PT
    C. Point-to-point tunnels
    D. Native IPv6

  • Question 353:

    Which of the following tools is an open source network intrusion prevention and detection system that works network sniffer and record the operation of the network, which is coordinated pre-signatures?

    A. dsniff
    B. kismet
    C. None
    D. KisMAC
    E. bridle

  • Question 354:

    A local bank wants to protect their card holder data. The bank should comply with the __________ standard to ensure the security of card holder data.

    A. PCI DSS
    B. SOX
    C. HIPAA
    D. ISEC

  • Question 355:

    Which of the following statements are true about security risks? Each correct answer represents a complete solution. (Choose three.)

    A. They are considered an indicator of threats coupled with vulnerability.
    B. They can be removed completely by taking proper actions.
    C. They can be analyzed and measured by the risk analysis process.
    D. They can be mitigated by reviewing and taking responsible actions based on possible risks.

  • Question 356:

    A local bank wants to protect their cardholder data. Which standard should the bark comply with in order to ensure security of this data?

    A. GDPR
    B. HIPAA
    C. SOX
    D. PCI DSS

  • Question 357:

    Identify the correct statements regarding a DMZ zone:

    A. It is a file integrity monitoring mechanism
    B. It is a Neutral zone between a trusted network and an untrusted network
    C. It serves as a proxy
    D. It includes sensitive internal servers such as database servers

  • Question 358:

    Which firewall can a network administrator use for better bandwidth management, deep packet inspection, and Hateful inspection?

    A. Circuit-level gateway firewall
    B. Next generation firewall
    C. Network address translation
    D. Stateful muIti-layer inspection firewall

  • Question 359:

    John visits an online shop that stores the IDs and prices of the items to buy in a cookie. After selecting the items that he wants to buy, the attacker changes the price of the item to 1. Original cookie values:

    ItemID1=2 ItemPrice1=900 ItemID2=1 ItemPrice2=200 Modified cookie values: ItemID1=2 ItemPrice1=1 ItemID2=1 ItemPrice2=1

    Now, he clicks the Buy button, and the prices are sent to the server that calculates the total price. Which of the following hacking techniques is John performing?

    A. Computer-based social engineering
    B. Man-in-the-middle attack
    C. Cookie poisoning
    D. Cross site scripting

  • Question 360:

    Which of the following filters car be applied to detect an ICMP ping sweep attempt using Wireshark?

    A. icmp.type==8
    B. icmp.type==13
    C. icmp.type==17
    D. icmp.type==15

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.