312-50V12 Exam Details

  • Exam Code
    :312-50V12
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v12)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :596 Q&As
  • Last Updated
    :May 30, 2026

EC-COUNCIL 312-50V12 Online Questions & Answers

  • Question 331:

    You have gained physical access to a Windows 2008 R2 server which has an accessible disc drive. When you attempt to boot the server and log in, you are unable to guess the password. In your toolkit, you have an Ubuntu 9.10 Linux LiveCD. Which Linux-based tool can change any user's password or activate disabled Windows accounts?

    A. John the Ripper
    B. SET
    C. CHNTPW
    D. Cain and Abel

  • Question 332:

    An organization decided to harden its security against web-application and web-server attacks. John, a security personnel in the organization, employed a security scanner to automate web-application security testing and to guard the organization's web infrastructure against web-application threats. Using that tool, he also wants to detect XSS, directory transversal problems, fault injection, SQL injection, attempts to execute commands, and several other attacks. Which of the following security scanners will help John perform the above task?

    A. AlienVault OSSIM
    B. Syhunt Hybrid
    C. Saleae Logic Analyzer
    D. Cisco ASA

  • Question 333:

    Eve is spending her day scanning the library computers. She notices that Alice is using a computer whose port 445 is active and listening. Eve uses the ENUM tool to enumerate Alice machine. From the command prompt, she types the following command.

    What is Eve trying to do?

    A. Eve is trying to connect as a user with Administrator privileges
    B. Eve is trying to enumerate all users with Administrative privileges
    C. Eve is trying to carry out a password crack for user Administrator
    D. Eve is trying to escalate privilege of the null user to that of Administrator

  • Question 334:

    Tremp is an IT Security Manager, and he is planning to deploy an IDS in his small company. He is looking for an IDS with the following characteristics:

    1.

    Verifies the success or failure of an attack

    2.

    Monitors system activities

    3.

    Detects attacks that a network-based IDS fails to detect

    4.

    Provides near real-time detection and response

    5.

    Does not require additional hardware

    6.

    Has a lower entry cost

    Which type of IDS is best suited for Tremp's requirements?

    A. Gateway-based IDS
    B. Network-based IDS
    C. Host-based IDS
    D. Open source-based

  • Question 335:

    Which definition among those given below best describes a covert channel?

    A. A server program using a port that is not well known.
    B. Making use of a protocol in a way it is not intended to be used.
    C. It is the multiplexing taking place on a communication link.
    D. It is one of the weak channels used by WEP which makes it insecure

  • Question 336:

    Which of the following Metasploit post-exploitation modules can be used to escalate privileges on Windows systems?

    A. getsystem
    B. getuid
    C. keylogrecorder
    D. autoroute

  • Question 337:

    Which of the following is assured by the use of a hash?

    A. Authentication
    B. Confidentiality
    C. Availability
    D. Integrity

  • Question 338:

    While performing a security audit of a web application, an ethical hacker discovers a potential vulnerability. The application responds to logically incorrect queries with detailed error messages that divulge the underlying database's structure. The ethical hacker decides to exploit this vulnerability further. Which type of SQL Injection attack is the ethical hacker likely to use?

    A. UNION SQL Injection
    B. Blind/inferential SQL Injection
    C. In-band SQL Injection
    D. Error-based SOL Injection

  • Question 339:

    As part of a college project, you have set up a web server for hosting your team's application. Given your interest in cybersecurity, you have taken the lead in securing the server. You are aware that hackers often attempt to exploit server

    misconfigurations.

    Which of the following actions would best protect your web server from potential misconfiguration- based attacks?

    A. Performing regular server configuration audits
    B. Enabling multi-factor authentication for users
    C. Implementing a firewall to filter traffic
    D. Regularly backing up server data

  • Question 340:

    What is the minimum number of network connections in a multi homed firewall?

    A. 3
    B. 5
    C. 4
    D. 2

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V12 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.