312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 501:

    Which DNS resource record can indicate how long any "DNS poisoning" could last?

    A. MX
    B. SOA
    C. NS
    D. TIMEOUT

  • Question 502:

    Which of the following is the primary objective of a rootkit?

    A. It opens a port to provide an unauthorized service
    B. It creates a buffer overflow
    C. It replaces legitimate programs
    D. It provides an undocumented opening in a program

  • Question 503:

    A penetration tester is attempting to gain access to a wireless network that is secured with WPA2 encryption. The tester successfully captures the WPA2 handshake but now needs to crack the pre-shared key. What is the most effective method to proceed?

    A. Perform a brute-force attack using common passwords against the captured handshake
    B. Use a dictionary attack against the captured WPA2 handshake to crack the key
    C. Execute a SQL injection attack on the router's login page
    D. Conduct a de-authentication attack to disconnect all clients from the network

  • Question 504:

    ping-* 6 192.168.0.101

    Output:

    Pinging 192.168.0.101 with 32 bytes of data:

    Reply from 192.168.0.101: bytes=32 time<1ms TTL=128

    Reply from 192.168.0.101: bytes=32 time<1ms TTL=128

    Reply from 192.168.0.101: bytes=32 time<1ms TTL=128

    Reply from 192.168.0.101: bytes=32 time<1ms TTL=128

    Reply from 192.168.0.101: bytes=32 time<1ms TTL=128

    Reply from 192.168.0.101:

    Ping statistics for 192.168.0101

    Packets: Sent = 6, Received = 6, Lost = 0 (0% loss).

    Approximate round trip times in milli-seconds:

    Minimum = 0ms, Maximum = 0ms, Average = 0ms

    What does the option * indicate?

    A. t
    B. s
    C. a
    D. n

  • Question 505:

    Which encryption method supports secure key distribution?

    A. Disk encryption
    B. Symmetric encryption
    C. Hash functions
    D. Asymmetric encryption

  • Question 506:

    As an IT technician in a small software development company, you are responsible for protecting the network against various cyber threats. You learn that attackers often try to bypass firewalls. Which of the following is a common technique used by attackers to evade firewall detection -

    A. Changing the source IP address of packets to make traffic appear to originate from a trusted source
    B. Using encrypted communication channels to evade network monitoring tools
    C. Using social engineering techniques to trick employees into revealing sensitive information
    D. Implementing an open-source operating system to bypass proprietary software restrictions

  • Question 507:

    An attacker with access to the inside network of a small company launches a successful STP manipulation attack. What will he do next?

    A. He will create a SPAN entry on the spoofed root bridge and redirect traffic to his computer.
    B. He will activate OSPF on the spoofed root bridge.
    C. He will repeat this action so that it escalates to a DoS attack.
    D. He will repeat the same attack against all L2 switches of the network.

  • Question 508:

    Harris is attempting to identify the OS running on his target machine. He inspected the initial TTL in the IP header and the related TCP window size and obtained the following results:

    TTL: 64

    Window Size: 5840

    What is the OS running on the target machine?

    A. Solaris OS
    B. Windows OS
    C. Mac OS
    D. Linux OS

  • Question 509:

    Upon establishing his new startup, Tom hired a cloud service provider (CSP) but was dissatisfied with their service and wanted to move to another CSP.

    What part of the contract might prevent him from doing so?

    A. Virtualization
    B. Lock-in
    C. Lock-down
    D. Lock-up

  • Question 510:

    A penetration tester suspects that the web application's "Order History" page is vulnerable to SQL injection because it displays user orders based on an unprotected user ID parameter in the URL. What is the most appropriate approach to test this?

    A. Inject JavaScript into the URL parameter to test for Cross-Site Scripting (XSS)
    B. Modify the URL parameter to userID=1 OR 1=1 and observe if all orders are displayed
    C. Perform a directory traversal attack to access sensitive system files
    D. Use a brute-force attack on the login form to identify valid user credentials

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.