312-50V10 Exam Details

  • Exam Code
    :312-50V10
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v10)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :747 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V10 Online Questions & Answers

  • Question 581:

    A company's security policy states that all Web browsers must automatically delete their HTTP browser cookies upon terminating. What sort of security breach is this policy attempting to mitigate?

    A. Attempts by attackers to access Web sites that trust the Web browser user by stealing the user's authentication credentials.
    B. Attempts by attackers to access the user and password information stored in the company's SQL database.
    C. Attempts by attackers to access passwords stored on the user's computer without the user's knowledge.
    D. Attempts by attackers to determine the user's Web browser usage patterns, including when sites were visited and for how long.

  • Question 582:

    Gavin owns a white-hat firm and is performing a website security audit for one of his clients. He begins by running a scan which looks for common misconfigurations and outdated software versions. Which of the following tools is he most likely using?

    A. Nikto
    B. Nmap
    C. Metasploit
    D. Armitage

  • Question 583:

    What is the minimum number of network connections in a multi homed firewall?

    A. 3
    B. 5
    C. 4
    D. 2

  • Question 584:

    Study the snort rule given below: From the options below, choose the exploit against which this rule applies.

    A. WebDav
    B. SQL Slammer
    C. MS Blaster
    D. MyDoom

  • Question 585:

    Trinity needs to scan all hosts on a /16 network for TCP port 445 only. What is the fastest way she can accomplish this with Nmap? Stealth is not a concern.

    A. nmap -sn -sF 10.1.0.0/16 445
    B. nmap -p 445 -n -T4 –open 10.1.0.0/16
    C. nmap -s 445 -sU -T5 10.1.0.0/16
    D. nmap -p 445 –max -Pn 10.1.0.0/16

  • Question 586:

    You are attempting to run an Nmap port scan on a web server. Which of the following commands would result in a scan of common ports with the least amount of noise in order to evade IDS?

    A. nmap –A - Pn
    B. nmap –sP –p-65535-T5
    C. nmap –sT –O –T0
    D. nmap –A --host-timeout 99-T1

  • Question 587:

    In IPv6 what is the major difference concerning application layer vulnerabilities compared to IPv4?

    A. Implementing IPv4 security in a dual-stack network offers protection from IPv6 attacks too.
    B. Vulnerabilities in the application layer are independent of the network layer. Attacks and mitigation techniques are almost identical.
    C. Due to the extensive security measures built in IPv6, application layer vulnerabilities need not be addresses.
    D. Vulnerabilities in the application layer are greatly different from IPv4.

  • Question 588:

    The network administrator at Spears Technology, Inc has configured the default gateway Cisco router's access-list as below:

    You are hired to conduct security testing on their network.

    You successfully brute-force the SNMP community string using a SNMP crack tool.

    The access-list configured at the router prevents you from establishing a successful connection.

    You want to retrieve the Cisco configuration from the router. How would you proceed?

    A. Use the Cisco's TFTP default password to connect and download the configuration file
    B. Run a network sniffer and capture the returned traffic with the configuration file from the router
    C. Run Generic Routing Encapsulation (GRE) tunneling protocol from your computer to the router masking your IP address
    D. Send a customized SNMP set request with a spoofed source IP address in the range - 192.168.1.0

  • Question 589:

    An incident investigator asks to receive a copy of the event logs from all firewalls, proxy servers, and Intrusion Detection Systems (IDS) on the network of an organization that has experienced a possible breach of security. When the investigator attempts to correlate the information in all of the logs, the sequence of many of the logged events do not match up.

    What is the most likely cause?

    A. The network devices are not all synchronized.
    B. Proper chain of custody was not observed while collecting the logs.
    C. The attacker altered or erased events from the logs.
    D. The security breach was a false positive.

  • Question 590:

    Employees in a company are no longer able to access Internet web sites on their computers. The network administrator is able to successfully ping IP address of web servers on the Internet and is able to open web sites by using an IP address in place of the URL. The administrator runs the nslookup command for www.eccouncil.org and receives an error message stating there is no response from the server. What should the administrator do next?

    A. Configure the firewall to allow traffic on TCP ports 53 and UDP port 53.
    B. Configure the firewall to allow traffic on TCP ports 80 and UDP port 443.
    C. Configure the firewall to allow traffic on TCP port 53.
    D. Configure the firewall to allow traffic on TCP port 8080.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V10 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.