312-38 Exam Details

  • Exam Code
    :312-38
  • Exam Name
    :EC-Council Certified Network Defender (CND)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :653 Q&As
  • Last Updated
    :May 29, 2026

EC-COUNCIL 312-38 Online Questions & Answers

  • Question 361:

    You are advising a school district on disaster recovery plans. In case a disaster affects the main IT centers for the district they will need to be able to work from an alternate location. However, budget is an issue. Which of the following is most appropriate for this client?

    A. Warm site
    B. Cold site
    C. Hot site
    D. Off site

  • Question 362:

    Fill in the blank with the appropriate term. is the complete network configuration and information toolkit that uses multi-threaded and multi-connection technologies in order to be very fast and efficient.

  • Question 363:

    Which of the following standards is a proposed enhancement to the 802.11a and 802.11b wireless LAN (WLAN) specifications that offers quality of service (QoS) features, including the prioritization of data, voice, and video transmissions?

    A. 802.15
    B. 802.11n
    C. 802.11e
    D. 802.11h

  • Question 364:

    Which of the following techniques is used for drawing symbols in public places for advertising an open Wi-Fi wireless network?

    A. Spamming
    B. War driving
    C. War dialing
    D. Warchalking

  • Question 365:

    Which of the following are the six different phases of the Incident handling process? Each correct answer represents a complete solution. Choose all that apply.

    A. Containment
    B. Identification
    C. Post mortem review
    D. Preparation
    E. Lessons learned
    F. Recovery
    G. Eradication

  • Question 366:

    Which among the following options represents professional hackers with an aim of attacking systems for profit?

    A. Script kiddies
    B. Organized hackers
    C. Hacktivists
    D. Cyber terrorists

  • Question 367:

    Alice wants to prove her identity to Bob. Bob requests her password as proof of identity, which Alice dutifully provides (possibly after some transformation like a hash function); meanwhile, Eve is eavesdropping the conversation and keeps the password. After the interchange is over, Eve connects to Bob posing as Alice; when asked for a proof of identity, Eve sends Alice's password read from the last session, which Bob accepts. Which of the following attacks is being used by Eve?

    A. Replay
    B. Fire walking
    C. Cross site scripting
    D. Session fixation

  • Question 368:

    Which of the following is a type of scam that entices a user to disclose personal information?

    A. Phishing
    B. Spamming
    C. Sniffing
    D. Smurfing

  • Question 369:

    Adam works as a Professional Penetration Tester. A project has been assigned to him to test the vulnerabilities of the CISCO Router of Umbrella Inc. Adam finds out that HTTP Configuration Arbitrary Administrative Access Vulnerability exists in the router. By applying different password cracking tools, Adam gains access to the router. He analyzes the router config file and notices the following lines: logging buffered errors logging history critical logging trap warnings logging 10.0.1.103 By analyzing the above lines, Adam concludes that this router is logging at log level 4 to the syslog server 10.0.1.103. He decides to change the log level from 4 to 0. Which of the following is the most likely reason of changing the log level?

    A. Changing the log level from 4 to 0 will result in the logging of only emergencies. This way the modification in the router is not sent to the syslog server.
    B. By changing the log level, Adam can easily perform a SQL injection attack.
    C. Changing the log level grants access to the router as an Administrator.
    D. Changing the log level from 4 to 0 will result in the termination of logging. This way the modification in the router is not sent to the syslog server.

  • Question 370:

    Which of the following is one of the most commonly used implementations of RAID?

    A. RAID 2
    B. RAID 3
    C. RAID 1
    D. RAID 5

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-38 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.