312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 131:

    An LDAP directory can be used to store information similar to a SQL database. LDAP uses a _____ database structure instead of SQL's _____ structure. Because of this, LDAP has difficulty representing many-to-one relationships.

    A. Relational, Hierarchical
    B. Strict, Abstract
    C. Hierarchical, Relational
    D. Simple, Complex

  • Question 132:

    Mirai malware targets IoT devices. After infiltration, it uses them to propagate and create botnets that are then used to launch which types of attack?

    A. MITM attack
    B. Birthday attack
    C. DDoS attack
    D. Password attack

  • Question 133:

    An unauthorized individual enters a building following an employee through the employee entrance after the lunch rush. What type of breach has the individual just performed?

    A. Reverse Social Engineering
    B. Tailgating
    C. Piggybacking
    D. Announced

  • Question 134:

    A penetration tester is assessing an IoT thermostat used in a smart home system. The device communicates with a cloud server for updates and commands. The tester discovers that communication between the device and the cloud server is not encrypted. What is the most effective way to exploit this vulnerability?

    A. Conduct a Cross-Site Scripting (XSS) attack on the thermostat's web interface
    B. Perform a brute-force attack on the thermostat's local admin login
    C. Execute a SQL injection attack on the cloud server's login page
    D. Use a man-in-the-middle (MitM) attack to intercept and manipulate unencrypted communication

  • Question 135:

    To hide the file on a Linux system, you have to start the filename with a specific character. What is the character?

    A. Exclamation mark (!)
    B. Underscore (_)
    C. Tilde (~)
    D. Period (.)

  • Question 136:

    You are a cybersecurity consultant for a healthcare organization that utilizes Internet of Medical Things (loMT) devices, such as connected insulin pumps and heart rate monitors, to provide improved patientcare. Recently, the organization has been targeted by ransomware attacks. While the IT infrastructure was unaffected due to robust security measures, they are worried that the loMT devices could be potential entry points for future attacks. What would be your main recommendation to protect these devices from such threats?

    A. Implement multi-factor authentication for all loMT devices.
    B. Disable all wireless connectivity on loMT devices.
    C. Use network segmentation to isolate loMT devices from the main network.
    D. Regularly change the IP addresses of all loMT devices.

  • Question 137:

    Log monitoring tools performing behavioral analysis have alerted several suspicious logins on a Linux server occurring during non-business hours. After further examination of all login activities, it is noticed that none of the logins have occurred during typical work hours. A Linux administrator who is investigating this problem realizes the system time on the Linux server is wrong by more than twelve hours. What protocol used on Linux servers to synchronize the time has stopped working?

    A. Time Keeper
    B. NTP
    C. PPP
    D. OSPP

  • Question 138:

    Multiple failed login attempts using expired tokens are followed by successful access with a valid token.

    What is the most likely attack scenario?

    A. Capturing a valid token before expiry
    B. Token replay attack using expired tokens
    C. Brute-forcing token generation
    D. Exploiting a race condition in token validation

  • Question 139:

    Stephen, an attacker, targeted the industrial control systems of an organization. He generated a fraudulent email with a malicious attachment and sent it to employees of the target organization. An employee who manages the sales software of the operational plant opened the fraudulent email and clicked on the malicious attachment. This resulted in the malicious attachment being downloaded and malware being injected into the sales software maintained in the victim's system. Further, the malware propagated itself to other networked systems, finally damaging the industrial automation components.

    What is the attack technique used by Stephen to damage the industrial systems?

    A. Spear-phishing attack
    B. SMiShing attack
    C. Reconnaissance attack
    D. HMI-based attack

  • Question 140:

    An e-commerce platform hosted on a public cloud infrastructure begins to experience significant latency and timeouts. Logs show thousands of HTTP connections sending headers extremely slowly and never completing the full request. What DoS technique is most likely responsible?

    A. Slowloris holding web server connections
    B. Fragmentation flood attack
    C. UDP application-layer flooding
    D. SYN flood with spoofed source IPs

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.