312-50V11 Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :May 28, 2026

EC-COUNCIL 312-50V11 Online Questions & Answers

  • Question 211:

    Within the context of Computer Security, which of the following statements describes Social Engineering best?

    A. Social Engineering is the act of publicly disclosing information
    B. Social Engineering is the means put in place by human resource to perform time accounting
    C. Social Engineering is the act of getting needed information from a person rather than breaking into a system
    D. Social Engineering is a training program within sociology studies

  • Question 212:

    An attacker utilizes a Wi-Fi Pineapple to run an access point with a legitimate-looking SSID for a nearby business in order to capture the wireless password. What kind of attack is this?

    A. MAC spoofing attack
    B. Evil-twin attack
    C. War driving attack
    D. Phishing attack

  • Question 213:

    Henry is a penetration tester who works for XYZ organization. While performing enumeration on a client organization, he queries the DNS server for a specific cached DNS record. Further, by using this cached record, he determines the sites recently visited by the organization's user. What is the enumeration technique used by Henry on the organization?

    A. DNS zone walking
    B. DNS cache snooping
    C. DNS SEC zone walking
    D. DNS cache poisoning

  • Question 214:

    On performing a risk assessment, you need to determine the potential impacts when some of the critical business processes of the company interrupt its service.

    What is the name of the process by which you can determine those critical businesses?

    A. Emergency Plan Response (EPR)
    B. Business Impact Analysis (BIA)
    C. Risk Mitigation
    D. Disaster Recovery Planning (DRP)

  • Question 215:

    is a set of extensions to DNS that provide the origin authentication of DNS data to DNS clients (resolvers) so as to reduce the threat of DNS poisoning, spoofing, and similar types of attacks.

    A. DNSSEC
    B. Resource records
    C. Resource transfer
    D. Zone transfer

  • Question 216:

    Tony wants to integrate a 128-bit symmetric block cipher with key sizes of 128,192, or 256 bits into a software program, which involves 32 rounds of computational operations that include substitution and permutation operations on four 32-bit word blocks using 8-variable S-boxes with 4-bit entry and 4-bit exit. Which of the following algorithms includes all the above features and can be integrated by Tony into the software program?

    A. TEA
    B. CAST-128
    C. RC5
    D. serpent

  • Question 217:

    Which of the following tools is used to detect wireless LANs using the 802.11a/b/g/n WLAN standards on a linux platform?

    A. Kismet
    B. Abel
    C. Netstumbler
    D. Nessus

  • Question 218:

    Which of the following DoS tools is used to attack target web applications by starvation of available sessions on the web server?

    The tool keeps sessions at halt using never-ending POST transmissions and sending an arbitrarily large content-length header value.

    A. My Doom
    B. Astacheldraht
    C. R-U-Dead-Yet?(RUDY)
    D. LOIC

  • Question 219:

    This wireless security protocol allows 192-bit minimum-strength security protocols and cryptographic tools to protect sensitive data, such as GCMP-2S6. MMAC-SHA384, and ECDSA using a 384-bit elliptic curve. Which is this wireless security protocol?

    A. WPA2 Personal
    B. WPA3-Personal
    C. WPA2-Enterprise
    D. WPA3-Enterprise

  • Question 220:

    This type of injection attack does not show any error message. It is difficult to exploit as it returns information when the application is given SQL payloads that elicit a true or false response from the server. By observing the response, an attacker can extract sensitive information. What type of attack is this?

    A. Time-based SQL injection
    B. Union SQL injection
    C. Error-based SQL injection
    D. Blind SQL injection

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.