312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 601:

    A penetration tester is assessing a company's vulnerability to advanced social engineering attacks targeting its legal department. Using detailed knowledge of mergers and legal proceedings, the tester crafts a highly credible pretext to deceive legal employees into sharing confidential case documents. What is the most effective technique?

    A. Send a spear-phishing email referencing specific merger details and requesting document access
    B. Create a fake LinkedIn profile to connect with legal employees and request document sharing
    C. Visit the office in person posing as a new legal intern to request document access
    D. Conduct a mass phishing campaign with generic legal templates attached

  • Question 602:

    Don, a student, came across a gaming app in a third-party app store and Installed it. Subsequently, all the legitimate apps in his smartphone were replaced by deceptive applications that appeared legitimate. He also received many advertisements on his smartphone after Installing the app. What is the attack performed on Don in the above scenario?

    A. SMS phishing attack
    B. SIM card attack
    C. Agent Smith attack
    D. Clickjacking

  • Question 603:

    A penetration tester targets a WPA2-PSK wireless network. The tester captures the handshake and wants to speed up cracking the pre-shared key. Which approach is most effective?

    A. Conduct a Cross-Site Scripting (XSS) attack on the router's login page
    B. Use a brute-force attack to crack the pre-shared key manually
    C. Use a dictionary attack with a large wordlist to crack the WPA2 key
    D. Perform a SQL injection attack to bypass the WPA2 authentication

  • Question 604:

    What is GINA?

    A. Gateway Interface Network Application
    B. GUI Installed Network Application CLASS
    C. Global Internet National Authority (G-USA)
    D. Graphical Identification and Authentication DLL

  • Question 605:

    An employee finds a USB drive labeled "Employee Salary Info 2024" and plugs it into a company computer, causing erratic behavior. What type of social engineering attack is this?

    A. Tempting the victim to engage with a malicious device using curiosity.
    B. Impersonating a senior staff member to extract login credentials.
    C. Using a discarded document to retrieve sensitive information.
    D. Bypassing physical security by following an authorized employee.

  • Question 606:

    A security analyst uses Zenmap to perform an ICMP timestamp ping scan to acquire information related to the current time from the target host machine.

    Which of the following Zenmap options must the analyst use to perform the ICMP timestamp ping scan?

    A. -PY
    B. -PU
    C. -PP
    D. -Pn

  • Question 607:

    Which advanced evasion technique poses the greatest challenge to detect and mitigate?

    A. Covert channel communication using IP header fields
    B. Honeypot spoofing
    C. Polymorphic malware
    D. Packet fragmentation evasion

  • Question 608:

    During a routine security audit, administrators discover that cloud storage backups were illegally accessed and modified . Which countermeasure would most directly mitigate such incidents in the future?

    A. Implementing resource auto-scaling
    B. Regularly conducting SQL injection testing
    C. Deploying biometric entry systems
    D. Adopting the 3-2-1 backup model

  • Question 609:

    A penetration tester is mapping a Windows-based internal network. The tester notices that TCP port 139 and UDP port 137 are open on multiple systems. File and printer sharing is enabled. To retrieve hostnames, user details, and domain roles without triggering alerts, which tool and method would be most effective?

    A. Perform LDAP enumeration via anonymous bind
    B. Use pspasswd to change remote passwords
    C. Run nbtstat -A to query the NetBIOS name table
    D. Use psloggedon to retrieve remote login sessions

  • Question 610:

    Ethical backer jane Doe is attempting to crack the password of the head of the it department of ABC company. She Is utilizing a rainbow table and notices upon entering a password that extra characters are added to the password after submitting. What countermeasure is the company using to protect against rainbow tables?

    A. Password key hashing
    B. Password salting
    C. Password hashing
    D. Account lockout

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.