312-50V7 Exam Details

  • Exam Code
    :312-50V7
  • Exam Name
    :Ethical Hacking and Countermeasures (CEHv7)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :514 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V7 Online Questions & Answers

  • Question 211:

    For messages sent through an insecure channel, a properly implemented digital signature gives the receiver reason to believe the message was sent by the claimed sender. While using a digital signature, the message digest is encrypted with which key?

    A. Sender's public key
    B. Receiver's private key
    C. Receiver's public key
    D. Sender's private key

  • Question 212:

    Which of the following processes evaluates the adherence of an organization to its stated security policy?

    A. Vulnerability assessment
    B. Penetration testing
    C. Risk assessment
    D. Security auditing

  • Question 213:

    The GET method should never be used when sensitive data such as credit card is being sent to a CGI program. This is because any GET command will appear in the URL, and will be logged by any servers. For example, let's say that you've

    entered your credit card information into a form that uses the GET method. The URL may appear like this:

    https://www.xsecurity-bank.com/creditcard.asp?cardnumber=453453433532234

    The GET method appends the credit card number to the URL. This means that anyone with access to a server log will be able to obtain this information. How would you protect from this type of attack?

    A. Never include sensitive information in a script
    B. Use HTTPS SSLv3 to send the data instead of plain HTTPS
    C. Replace the GET with POST method when sending data
    D. Encrypt the data before you send using GET method

  • Question 214:

    Which type of password cracking technique works like dictionary attack but adds some numbers and symbols to the words from the dictionary and tries to crack the password?

    A. Dictionary attack
    B. Brute forcing attack
    C. Hybrid attack
    D. Syllable attack
    E. Rule-based attack

  • Question 215:

    Which element of Public Key Infrastructure (PKI) verifies the applicant?

    A. Certificate authority
    B. Validation authority
    C. Registration authority
    D. Verification authority

  • Question 216:

    Passive reconnaissance involves collecting information through which of the following?

    A. Social engineering
    B. Network traffic sniffing
    C. Man in the middle attacks
    D. Publicly accessible sources

  • Question 217:

    Maintaining a secure Web server requires constant effort, resources, and vigilance from an organization. Securely administering a Web server on a daily basis is an essential aspect of Web server security. Maintaining the security of a Web server will usually involve the following steps:

    1.

    Configuring, protecting, and analyzing log files

    2.

    Backing up critical information frequently

    3.

    Maintaining a protected authoritative copy of the organization's Web content

    4.

    Establishing and following procedures for recovering from compromise

    5.

    Testing and applying patches in a timely manner

    6.

    Testing security periodically.

    In which step would you engage a forensic investigator?

    A. 1
    B. 2
    C. 3
    D. 4
    E. 5
    F. 6

  • Question 218:

    A large company intends to use Blackberry for corporate mobile phones and a security analyst is assigned to evaluate the possible threats. The analyst will use the Blackjacking attack method to demonstrate how an attacker could circumvent perimeter defenses and gain access to the corporate network. What tool should the analyst use to perform a Blackjacking attack?

    A. Paros Proxy
    B. BBProxy
    C. BBCrack
    D. Blooover

  • Question 219:

    What is the main reason the use of a stored biometric is vulnerable to an attack?

    A. The digital representation of the biometric might not be unique, even if the physical characteristic is unique.
    B. Authentication using a stored biometric compares a copy to a copy instead of the original to a copy.
    C. A stored biometric is no longer "something you are" and instead becomes "something you have".
    D. A stored biometric can be stolen and used by an attacker to impersonate the individual identified by the biometric.

  • Question 220:

    Which of the following is an example of an asymmetric encryption implementation?

    A. SHA1
    B. PGP
    C. 3DES
    D. MD5

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V7 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.