312-50V13 Exam Details

  • Exam Code
    :312-50V13
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v13)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :879 Q&As
  • Last Updated
    :May 27, 2026

EC-COUNCIL 312-50V13 Online Questions & Answers

  • Question 661:

    Which of the following tools is used to detect wireless LANs using the 802.11a/b/g/n WLAN standards on a linux platform?

    A. Kismet
    B. Abel
    C. Netstumbler
    D. Nessus

  • Question 662:

    A penetration tester is tasked with identifying vulnerabilities on a web server running outdated software. The server hosts several web applications and is protected by a basic firewall. Which technique should the tester use to exploit potential server vulnerabilities?

    A. Conduct a SQL injection attack on the web application's login form
    B. Perform a brute-force login attack on the admin panel
    C. Execute a buffer overflow attack targeting the web server software
    D. Use directory traversal to access sensitive configuration files

  • Question 663:

    As a network administrator, you explain to your team that a recent DDoS attack targeted the application layer of your company's web server. Which type of DDoS attack was most likely used?

    A. HTTP flood attack
    B. UDP flood attack
    C. ICMP flood attack
    D. SYN flood attack

  • Question 664:

    A new wireless client is configured to join a 802.11 network. This client uses the same hardware and software as many of the other clients on the network. The client can see the network, but cannot connect. A wireless packet sniffer shows that the Wireless Access Point (WAP) is not responding to the association requests being sent by the wireless client. What is a possible source of this problem?

    A. The WAP does not recognize the client's MAC address
    B. The client cannot see the SSID of the wireless network
    C. Client is configured for the wrong channel
    D. The wireless client is not configured to use DHCP

  • Question 665:

    An attacker impersonates a technician and gains physical access to restricted areas. What tactic is this?

    A. Help desk impersonation
    B. Dumpster diving
    C. Remote tech support scam
    D. Physical impersonation (Tailgating/Impersonation)

  • Question 666:

    Which advanced session hijacking technique is hardest to detect and mitigate in a remote-access environment?

    A. Session sidejacking over public Wi-Fi
    B. ARP spoofing on local networks
    C. Brute-force session guessing
    D. Cookie poisoning

  • Question 667:

    Kevin, an encryption specialist, implemented a technique that enhances the security of keys used for encryption and authentication. Using this technique, Kevin input an initial key to an algorithm that generated an enhanced key that is resistant to brute-force attacks. What is the technique employed by Kevin to improve the security of encryption keys?

    A. Key derivation function
    B. Key reinstallation
    C. A Public key infrastructure
    D. Key stretching

  • Question 668:

    Bob received this text message on his mobile phone: "Hello, this is Scott Smelby from the Yahoo Bank. Kindly contact me for a vital transaction on: [email protected]". Which statement below is true?

    A. This is a scam as everybody can get a @yahoo address, not the Yahoo customer service employees.
    B. This is a scam because Bob does not know Scott.
    C. Bob should write to [email protected] to verify the identity of Scott.
    D. This is probably a legitimate message as it comes from a respectable organization.

  • Question 669:

    A penetration tester is tasked with scanning a network protected by an IDS and firewall that actively blocks connection attempts on non-standard ports. The tester needs to gather information on the target system without triggering alarms. Which technique should the tester use to evade detection?

    A. Use a low-and-slow scan to reduce detection by the IDS
    B. Conduct a full TCP Connect scan to confirm open ports
    C. Perform a SYN flood attack to overwhelm the firewall
    D. Execute a TCP ACK scan to map firewall rules and bypass the IDS

  • Question 670:

    Bob is going to perform an active session hijack against Brownies Inc. He has found a target that allows session-oriented connections (Telnet) and performs the sequence prediction on the target operating system. He manages to find an active session due to the high level of traffic on the network.

    What is Bob supposed to do next?

    A. Take over the session
    B. Reverse sequence prediction
    C. Guess the sequence numbers
    D. Take one of the parties offline

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V13 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.