312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 161:

    An attacker with access to the inside network of a small company launches a successful STP manipulation attack. What will he do next?

    A. He will create a SPAN entry on the spoofed root bridge and redirect traffic to his computer.
    B. He will activate OSPF on the spoofed root bridge.
    C. He will repeat this action so that it escalates to a DoS attack.
    D. He will repeat the same attack against all L2 switches of the network.

  • Question 162:

    Eric, a cloud security engineer, implements a technique for securing the cloud resources used by his organization. This technique assumes by default that a user attempting to access the network is not an authentic entity and verifies every incoming connection before allowing access to the network. Using this technique, he also imposed conditions such that employees can access only the resources required for their role.

    What is the technique employed by Eric to secure cloud resources?

    A. Serverless computing
    B. Demilitarized zone
    C. Container technology
    D. Zero trust network

  • Question 163:

    Todd has been asked by the security officer to purchase a counter-based authentication system. Which of the following best describes this type of system?

    A. A biometric system that bases authentication decisions on behavioral attributes.
    B. A biometric system that bases authentication decisions on physical attributes.
    C. An authentication system that creates one-time passwords that are encrypted with secret keys.
    D. An authentication system that uses passphrases that are converted into virtual passwords.

  • Question 164:

    Shiela is an information security analyst working at HiTech Security Solutions. She is performing service version discovery using Nmap to obtain information about the running services and their versions on a target system. Which of the following Nmap options must she use to perform service version discovery on the target host?

    A. -SN
    B. -SX
    C. -sV
    D. -SF

  • Question 165:

    What would be the fastest way to perform content enumeration on a given web server by using the Gobuster tool?

    A. Performing content enumeration using the bruteforce mode and 10 threads
    B. Shipping SSL certificate verification
    C. Performing content enumeration using a wordlist
    D. Performing content enumeration using the bruteforce mode and random file extensions

  • Question 166:

    What is the way to decide how a packet will move from an untrusted outside host to a protected inside that is behind a firewall, which permits the hacker to determine which ports are open and if the packets can pass through the packet-filtering of the firewall?

    A. Session hijacking
    B. Firewalking
    C. Man-in-the middle attack
    D. Network sniffing

  • Question 167:

    How is the public key distributed in an orderly, controlled fashion so that the users can be sure of the sender's identity?

    A. Hash value
    B. Private key
    C. Digital signature
    D. Digital certificate

  • Question 168:

    Which of the following statements about a zone transfer is correct? (Choose three.)

    A. A zone transfer is accomplished with the DNS
    B. A zone transfer is accomplished with the nslookup service
    C. A zone transfer passes all zone information that a DNS server maintains
    D. A zone transfer passes all zone information that a nslookup server maintains
    E. A zone transfer can be prevented by blocking all inbound TCP port 53 connections
    F. Zone transfers cannot occur on the Internet

  • Question 169:

    An attacker identified that a user and an access point are both compatible with WPA2 and WPA3 encryption. The attacker installed a rogue access point with only WPA2 compatibility in the vicinity and forced the victim to go through the WPA2 four-way handshake to get connected. After the connection was established, the attacker used automated tools to crack WPA2-encrypted messages. What is the attack performed in the above scenario?

    A. Timing-based attack
    B. Side-channel attack
    C. Downgrade security attack
    D. Cache-based attack

  • Question 170:

    What term describes the amount of risk that remains after the vulnerabilities are classified and the countermeasures have been deployed?

    A. Residual risk
    B. Impact risk
    C. Deferred risk
    D. Inherent risk

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.