312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 191:

    Your organization has signed an agreement with a web hosting provider that requires you to take full responsibility for the maintenance of the cloud-based resources. Which of the following models covers this?

    A. Platform as a Service
    B. Software as a Service
    C. Functions as a Service
    D. Infrastructure as a Service

  • Question 192:

    In order to tailor your tests during a web-application scan, you decide to determine which web-server version is hosting the application. On using the sV flag with Nmap. you obtain the following response:

    80/tcp open http-proxy Apache Server 7.1.6

    what Information-gathering technique does this best describe?

    A. WhOiS lookup
    B. Banner grabbing
    C. Dictionary attack
    D. Brute forcing

  • Question 193:

    Which information CANNOT be directly obtained from DNS interrogation?

    A. Usernames and passwords
    B. Server geolocation (via IPs)
    C. Subdomains of the organization
    D. IP addresses of mail servers

  • Question 194:

    Gregory, a professional penetration tester working at Sys Security Ltd., is tasked with performing a security test of web applications used in the company. For this purpose, Gregory uses a tool to test for any security loopholes by hijacking a session between a client and server. This tool has a feature of intercepting proxy that can be used to inspect and modify the traffic between the browser and target application. This tool can also perform customized attacks and can be used to test the randomness of session tokens. Which of the following tools is used by Gregory in the above scenario?

    A. Nmap
    B. Burp Suite
    C. CxSAST
    D. Wireshark

  • Question 195:

    A malicious user has acquired a Ticket Granting Service from the domain controller using a valid user's Ticket Granting Ticket in a Kerberoasting attack. He exhorted the TGS tickets from memory for offline cracking. But the attacker was stopped before he could complete his attack. The system administrator needs to investigate and remediate the potential breach.

    What should be the immediate step the system administrator takes?

    A. Perform a system reboot to clear the memory
    B. Delete the compromised user's account
    C. Change the NTLM password hash used to encrypt the ST
    D. invalidate the TGS the attacker acquired

  • Question 196:

    Identify the UDP port that Network Time Protocol (NTP) uses as its primary means of communication?

    A. 113
    B. 69
    C. 123
    D. 161

  • Question 197:

    If you send a TCP ACK segment to a known closed port on a firewall but it does not respond with an RST, what do you know about the firewall you are scanning?

    A. There is no firewall in place.
    B. This event does not tell you anything about the firewall.
    C. It is a stateful firewall
    D. It is a non-stateful firewall.

  • Question 198:

    Your company suspects a potential security breach and has hired you as a Certified Ethical Hacker to investigate. You discover evidence of footprinting through search engines and advanced Google hacking techniques. The attacker utilized Google search operators to extract sensitive information. You further notice queries that indicate the use of the Google Hacking Database (GHDB) with an emphasis on VPN footprinting.

    Which of the following Google advanced search operators would be the LEAST useful in providing the attacker with sensitive VPN-related information?

    A. intitle: This operator restricts results to only the pages containing the specified term in the title
    B. location: This operator finds information for a specific location
    C. inur: This operator restricts the results to only the pages containing the specified word in the URL
    D. link: This operator searches websites or pages that contain links to the specified website or page

  • Question 199:

    Firewalls are the software or hardware systems that are able to control and monitor the traffic coming in and out the target network based on pre-defined set of rules. Which of the following types of firewalls can protect against SQL injection attacks?

    A. Data-driven firewall
    B. Packet firewall
    C. Web application firewall
    D. Stateful firewall

  • Question 200:

    A red team operator wants to obtain credentials from a Windows machine without touching LSASS memory due to security controls and Credential Guard. They use SSPI to generate NetNTLM responses in the logged- in user context and collect those responses for offline cracking. Which attack technique is being used?

    A. Internal Monologue attack technique executed through OS authentication protocol manipulations
    B. Replay attack attempt by reusing captured authentication traffic sequences
    C. Hash injection approach using credential hashes for authentication purposes
    D. Pass-the-ticket attack method involving forged tickets for network access

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.