312-50V7 Exam Details

  • Exam Code
    :312-50V7
  • Exam Name
    :Ethical Hacking and Countermeasures (CEHv7)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :514 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V7 Online Questions & Answers

  • Question 451:

    A hacker, who posed as a heating and air conditioning specialist, was able to install a sniffer program in a switched environment network. Which attack could the hacker use to sniff all of the packets in the network?

    A. Fraggle
    B. MAC Flood
    C. Smurf
    D. Tear Drop

  • Question 452:

    Yancey is a network security administrator for a large electric company. This company provides power for over 100,000 people in Las Vegas. Yancey has worked for his company for over 15 years and has become very successful. One day, Yancey comes in to work and finds out that the company will be downsizing and he will be out of a job in two weeks. Yancey is very angry and decides to place logic bombs, viruses, Trojans, and backdoors all over the network to take down the company once he has left. Yancey does not care if his actions land him in jail for 30 or more years, he just wants the company to pay for what they are doing to him. What would Yancey be considered?

    A. Yancey would be considered a Suicide Hacker
    B. Since he does not care about going to jail, he would be considered a Black Hat
    C. Because Yancey works for the company currently; he would be a White Hat
    D. Yancey is a Hacktivist Hacker since he is standing up to a company that is downsizing

  • Question 453:

    Which of the following levels of algorithms does Public Key Infrastructure (PKI) use?

    A. RSA 1024 bit strength
    B. AES 1024 bit strength
    C. RSA 512 bit strength
    D. AES 512 bit strength

  • Question 454:

    Which of the following statements are true regarding N-tier architecture? (Choose two.)

    A. Each layer must be able to exist on a physically independent system.
    B. The N-tier architecture must have at least one logical layer.
    C. Each layer should exchange information only with the layers above and below it.
    D. When a layer is changed or updated, the other layers must also be recompiled or modified.

  • Question 455:

    Samuel is the network administrator of DataX Communications, Inc. He is trying to configure his firewall to block password brute force attempts on his network. He enables blocking the intruder's IP address for a period of 24 hours' time after

    more than three unsuccessful attempts. He is confident that this rule will secure his network from hackers on the Internet.

    But he still receives hundreds of thousands brute-force attempts generated from various IP addresses around the world. After some investigation he realizes that the intruders are using a proxy somewhere else on the Internet which has been

    scripted to enable the random usage of various proxies on each request so as not to get caught by the firewall rule.

    Later he adds another rule to his firewall and enables small sleep on the password attempt so that if the password is incorrect, it would take 45 seconds to return to the user to begin another attempt. Since an intruder may use multiple

    machines to brute force the password, he also throttles the number of connections that will be prepared to accept from a particular IP address. This action will slow the intruder's attempts.

    Samuel wants to completely block hackers brute force attempts on his network.

    What are the alternatives to defending against possible brute-force password attacks on his site?

    A. Enforce a password policy and use account lockouts after three wrong logon attempts even though this might lock out legit users
    B. Enable the IDS to monitor the intrusion attempts and alert you by e-mail about the IP address of the intruder so that you can block them at theFirewall manually
    C. Enforce complex password policy on your network so that passwords are more difficult to brute force
    D. You cannot completely block the intruders attempt if they constantly switch proxies

  • Question 456:

    How can a policy help improve an employee's security awareness?

    A. By implementing written security procedures, enabling employee security training, and promoting the benefits of security
    B. By using informal networks of communication, establishing secret passing procedures, and immediately terminating employees
    C. By sharing security secrets with employees, enabling employees to share secrets, and establishing a consultative help line
    D. By decreasing an employee's vacation time, addressing ad-hoc employment clauses, and ensuring that managers know employee strengths

  • Question 457:

    The following script shows a simple SQL injection. The script builds an SQL query by concatenating hard-coded strings together with a string entered by the user:

    The user is prompted to enter the name of a city on a Web form. If she enters Chicago, the query assembled by the script looks similar to the following:

    SELECT * FROM OrdersTable WHERE ShipCity = 'Chicago'

    How will you delete the OrdersTable from the database using SQL Injection?

    A. Chicago'; drop table OrdersTable -
    B. Delete table'blah'; OrdersTable -
    C. EXEC; SELECT * OrdersTable > DROP -
    D. cmdshell'; 'del c:\sql\mydb\OrdersTable' //

  • Question 458:

    Which security control role does encryption meet?

    A. Preventative
    B. Detective
    C. Offensive
    D. Defensive

  • Question 459:

    Jacob is looking through a traffic log that was captured using Wireshark. Jacob has come across what appears to be SYN requests to an internal computer from a spoofed IP address. What is Jacob seeing here?

    A. Jacob is seeing a Smurf attack.
    B. Jacob is seeing a SYN flood.
    C. He is seeing a SYN/ACK attack.
    D. He has found evidence of an ACK flood.

  • Question 460:

    Which of the following countermeasure can specifically protect against both the MAC Flood and MAC Spoofing attacks?

    A. Configure Port Security on the switch
    B. Configure Port Recon on the switch
    C. Configure Switch Mapping
    D. Configure Multiple Recognition on the switch

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V7 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.