312-50V12 Exam Details

  • Exam Code
    :312-50V12
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v12)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :596 Q&As
  • Last Updated
    :May 30, 2026

EC-COUNCIL 312-50V12 Online Questions & Answers

  • Question 291:

    #!/usr/bin/python import socket buffer=[""A""] counter=50 while len(buffer)<=100: buffer.append (""A""*counter)

    counter=counter+50 commands= [""HELP"",""STATS ."",""RTIME ."",""LTIME. "",""SRUN ."',""TRUN ."",""GMON."",""GDOG ."",""KSTET .",""GTER ."",""HTER ."", ""LTER .",""KSTAN .""] for command in commands: for buffstring in buffer: print ""Exploiting"" +command +"":""+str(len(buffstring)) s=socket.socket(socket.AF_INET, socket.SOCK_STREAM) s.connect((`127.0.0.1', 9999)) s.recv(50) send(command+buffstring) s.close()

    What is the code written for?

    A. Denial-of-service (DOS)
    B. Buffer Overflow
    C. Bruteforce
    D. Encryption

  • Question 292:

    To hide the file on a Linux system, you have to start the filename with a specific character. What is the character?

    A. Exclamation mark (!)
    B. Underscore (_)
    C. Tilde H
    D. Period (.)

  • Question 293:

    David is a security professional working in an organization, and he is implementing a vulnerability management program in the organization to evaluate and control the risks and vulnerabilities in its IT infrastructure. He is currently executing the process of applying fixes on vulnerable systems to reduce the impact and severity of vulnerabilities. Which phase of the vulnerability-management life cycle is David currently in?

    A. verification
    B. Risk assessment
    C. Vulnerability scan
    D. Remediation

  • Question 294:

    Which of the following incident handling process phases is responsible for defining rules, collaborating human workforce, creating a back-up plan, and testing the plans for an organization?

    A. Preparation phase
    B. Containment phase
    C. Identification phase
    D. Recovery phase

  • Question 295:

    Samuel, a professional hacker, monitored and Intercepted already established traffic between Bob and a host machine to predict Bob's ISN. Using this ISN, Samuel sent spoofed packets with Bob's IP address to the host machine. The host machine responded with <| packet having an Incremented ISN. Consequently, Bob's connection got hung, and Samuel was able to communicate with the host machine on behalf of Bob. What is the type of attack performed by Samuel in the above scenario?

    A. UDP hijacking
    B. Blind hijacking
    C. TCP/IP hacking
    D. Forbidden attack

  • Question 296:

    Cross-site request forgery involves:

    A. A request sent by a malicious user from a browser to a server
    B. Modification of a request by a proxy between client and server
    C. A browser making a request to a server without the user's knowledge
    D. A server making a request to another server without the user's knowledge

  • Question 297:

    The tools which receive event logs from servers, network equipment, and applications, and perform analysis and correlation on those logs, and can generate alarms for security relevant issues, are known as what?

    A. network Sniffer
    B. Vulnerability Scanner
    C. Intrusion prevention Server
    D. Security incident and event Monitoring

  • Question 298:

    Which access control mechanism allows for multiple systems to use a central authentication server (CAS) that permits users to authenticate once and gain access to multiple systems?

    A. Role Based Access Control (RBAC)
    B. Discretionary Access Control (DAC)
    C. Single sign-on
    D. Windows authentication

  • Question 299:

    What is the proper response for a NULL scan if the port is closed?

    A. SYN
    B. ACK
    C. FIN
    D. PSH
    E. RST
    F. No response

  • Question 300:

    You are the chief cybersecurity officer at CloudSecure Inc., and your team is responsible for securing a cloudbased application that handles sensitive customer data. To ensure that the data is protected from breaches, you have decided to implement encryption for both data-at-rest and data-in-transit. The development team suggests using SSL/TLS for securing data in transit. However, you want to also implement a mechanism to detect if the data was tampered with during transmission. Which of the following should you propose?

    A. Implement IPsec in addition to SSL/TLS.
    B. Qswitch to using SSH for data transmission.
    C. Use the cloud service provider's built-in encryption services.
    D. Encrypt data using the AES algorithm before transmission.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V12 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.