312-50V12 Exam Details

  • Exam Code
    :312-50V12
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v12)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :596 Q&As
  • Last Updated
    :May 30, 2026

EC-COUNCIL 312-50V12 Online Questions & Answers

  • Question 271:

    In this attack, an adversary tricks a victim into reinstalling an already-in-use key. This is achieved by manipulating and replaying cryptographic handshake messages. When the victim reinstall the key, associated parameters such as the incremental transmit packet number and receive packet number are reset to their initial values. What is this attack called?

    A. Chop chop attack
    B. KRACK
    C. Evil twin
    D. Wardriving

  • Question 272:

    Susan, a software developer, wants her web API to update other applications with the latest information. For this purpose, she uses a user-defined HTTP tailback or push APIs that are raised based on trigger events: when invoked, this

    feature supplies data to other applications so that users can instantly receive real-time Information.

    Which of the following techniques is employed by Susan?

    A. web shells
    B. Webhooks
    C. REST API
    D. SOAP API

  • Question 273:

    How is the public key distributed in an orderly, controlled fashion so that the users can be sure of the sender's identity?

    A. Hash value
    B. Private key
    C. Digital signature
    D. Digital certificate

  • Question 274:

    You are working as a Security Analyst in a company XYZ that owns the whole subnet range of 23.0.0.0/8 and 192.168.0.0/8. While monitoring the data, you find a high number of outbound connections. You see that IP's owned by XYZ

    (Internal) and private IP's are communicating to a Single Public IP. Therefore, the Internal IP's are sending data to the Public IP. After further analysis, you find out that this Public IP is a blacklisted IP, and the internal communicating devices

    are compromised.

    What kind of attack does the above scenario depict?

    A. Botnet Attack
    B. Spear Phishing Attack
    C. Advanced Persistent Threats
    D. Rootkit Attack

  • Question 275:

    When a security analyst prepares for the formal security assessment - what of the following should be done in order to determine inconsistencies in the secure assets database and verify that system is compliant to the minimum security baseline?

    A. Data items and vulnerability scanning
    B. Interviewing employees and network engineers
    C. Reviewing the firewalls configuration
    D. Source code review

  • Question 276:

    One of your team members has asked you to analyze the following SOA record.

    What is the TTL? Rutgers.edu.SOA NS1.Rutgers.edu ipad.college.edu (200302028 3600 3600 604800 2400.)

    A. 200303028
    B. 3600
    C. 604800
    D. 2400
    E. 60
    F. 4800

  • Question 277:

    A security analyst is preparing to analyze a potentially malicious program believed to have infiltrated an organization's network. To ensure the safety and integrity of the production environment, the analyst decided to use a sheep dip computer for the analysis. Before initiating the analysis, what key step should the analyst take?

    A. Run the potentially malicious program on the sheep dip computer to determine its behavior
    B. Store the potentially malicious program on an external medium, such as a CD-ROM
    C. Connect the sheep dip computer to the organization's internal network
    D. install the potentially malicious program on the sheep dip computer

  • Question 278:

    Which of the following tools can be used for passive OS fingerprinting?

    A. nmap
    B. tcpdump
    C. tracert
    D. ping

  • Question 279:

    During a recent vulnerability assessment of a major corporation's IT systems, the security team identified several potential risks. They want to use a vulnerability scoring system to quantify and prioritize these vulnerabilities. They decide to use the Common Vulnerability Scoring System (CVSS). Given the characteristics of the identified vulnerabilities, which of the following statements is the most accurate regarding the metric types used by CVSS to measure these vulnerabilities?

    A. Temporal metric represents the inherent qualities of a vulnerability
    B. Base metric represents the inherent qualities of a vulnerability
    C. Environmental metric involves the features that change during the lifetime of the vulnerability
    D. Temporal metric involves measuring vulnerabilities based on a_ specific environment or implementation

  • Question 280:

    What is the port to block first in case you are suspicious that an loT device has been compromised?

    A. 22
    B. 443
    C. 48101
    D. 80

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V12 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.