312-50 Exam Details

  • Exam Code
    :312-50
  • Exam Name
    :Certified Ethical Hacker
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :765 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50 Online Questions & Answers

  • Question 691:

    Jimmy, an attacker, knows that he can take advantage of poorly designed input validation routines to create or alter SQL commands to gain access to private data or execute commands in the database. What technique does Jimmy use to compromise a database?

    A. Jimmy can submit user input that executes an operating system command to compromise a target system
    B. Jimmy can utilize this particular database threat that is an SQL injection technique to penetrate a target system
    C. Jimmy can utilize an incorrect configuration that leads to access with higher-than-expected privilege of the database
    D. Jimmy can gain control of system to flood the target system with requests, preventing legitimate users from gaining access

  • Question 692:

    Because UDP is a connectionless protocol: (Select 2)

    A. UDP recvfrom() and write() scanning will yield reliable results
    B. It can only be used for Connect scans
    C. It can only be used for SYN scans
    D. There is no guarantee that the UDP packets will arrive at their destination
    E. ICMP port unreachable messages may not be returned successfully

  • Question 693:

    What happens when one experiences a ping of death?

    A. This is when an IP datagram is received with the "protocol" field in the IP header set to 1 (ICMP) and the "type" field in the ICMP header is set to 18 (Address Mask Reply).
    B. This is when an IP datagram is received with the "protocol" field in the IP header set to 1 (ICMP), the Last Fragment bit is set, and (IP offset ` 8) + (IP data length) >65535.In other words, the IP offset (which represents the starting position of this fragment in the original packet, and which is in 8-byte units) plus the rest of the packet is greater than the maximum size for an IP packet.
    C. This is when an IP datagram is received with the "protocol" field in the IP header set to 1 (ICMP) and the source equal to destination address.
    D. This is when an the IP header is set to 1 (ICMP) and the "type" field in the ICMP header is set to 5 (Redirect).

  • Question 694:

    Dave has been assigned to test the network security of Acme Corp. The test was announced to the employees. He created a webpage to discuss the progress of the tests with employees who were interested in following the test. Visitors were allowed to click on a sand clock to mark the progress of the test. Dave successfully embeds a keylogger. He also added some statistics on the webpage. The firewall protects the network well and allows strict Internet access. How was security compromised and how did the firewall respond?

    A. The attack did not fall through as the firewall blocked the traffic
    B. The attack was social engineering and the firewall did not detect it
    C. The attack was deception and security was not directly compromised
    D. Security was not compromised as the webpage was hosted internally

  • Question 695:

    What is the goal of a Denial of Service Attack?

    A. Capture files from a remote computer.
    B. Render a network or computer incapable of providing normal service.
    C. Exploit a weakness in the TCP stack.
    D. Execute service at PS 1009.

  • Question 696:

    Liza has forgotten her password to an online bookstore. The web application asks her to key in her email so that they can send her the password. Liza enters her email [email protected]'. The application displays server error. What is wrong with the web application?

    A. The email is not valid
    B. User input is not sanitized
    C. The web server may be down
    D. The ISP connection is not reliable

  • Question 697:

    Bob is a very security conscious computer user. He plans to test a site that is known to have malicious applets, code, and more. Bob always make use of a basic Web Browser to perform such testing. Which of the following web browser can adequately fill this purpose?

    A. Internet Explorer
    B. Mozila
    C. Lynx
    D. Tiger

  • Question 698:

    Steven is the senior network administrator for Onkton Incorporated, an oil well drilling company in Oklahoma City. Steven and his team of IT technicians are in charge of keeping inventory for the entire company; including computers, software, and oil well equipment. To keep track of everything, Steven has decided to use RFID tags on their entire inventory so they can be scanned with either a wireless scanner or a handheld scanner. These RFID tags hold as much information as possible about the equipment they are attached to. When Steven purchased these tags, he made sure they were as state of the art as possible. One feature he really liked was the ability to disable RFID tags if necessary. This comes in very handy when the company actually sells oil drilling equipment to other companies. All Steven has to do is disable the RFID tag on the sold equipment and it cannot give up any information that was previously stored on it. What technology allows Steven to disable the RFID tags once they are no longer needed?

    A. Newer RFID tags can be disabled by using Terminator Switches built into the chips
    B. RFID Kill Switches built into the chips enable Steven to disable them
    C. The company's RFID tags can be disabled by Steven using Replaceable ROM technology
    D. The technology used to disable an RFIP chip after it is no longer needed, or possibly stolen, is called RSA Blocking

  • Question 699:

    Microsoft Authenticode technology is used for:

    A. Digital Signing Activex controls
    B. Digitally signing SSL Certificates
    C. Digitally Signing JavaScript Files
    D. Digitally Signing Java Applets

  • Question 700:

    How many bits encryption does SHA-1 use?

    A. 64 bits
    B. 128 bits
    C. 160 bits
    D. 256 bits

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.