312-50V8 Exam Details

  • Exam Code
    :312-50V8
  • Exam Name
    :Certified Ethical Hacker v8
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1008 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V8 Online Questions & Answers

  • Question 181:

    On wireless networks, SSID is used to identify the network.

    Why are SSID not considered to be a good security mechanism to protect a wireless networks?

    A. The SSID is only 32 bits in length.
    B. The SSID is transmitted in clear text.
    C. The SSID is the same as the MAC address for all vendors.
    D. The SSID is to identify a station,not a network.

  • Question 182:

    What type of encryption does WPA2 use?

    A. DES 64 bit
    B. AES-CCMP 128 bit
    C. MD5 48 bit
    D. SHA 160 bit

  • Question 183:

    When Nmap performs a ping sweep, which of the following sets of requests does it send to the target device?

    A. ICMP ECHO_REQUEST and TCP SYN
    B. ICMP ECHO_REQUEST and TCP ACK
    C. ICMP ECHO_REPLY and TFP RST
    D. ICMP ECHO_REPLY and TCP FIN

  • Question 184:

    It is a vulnerability in GNU's bash shell, discovered in September of 2004, that gives attackers access to run remote commands on a vulnerable system. The malicious software can take control of an infected machine, launch denial-of service attacks to disrupt websites, and scan for other vulnerable devices (including routers).

    Which of the following vulnerabilities is being described?

    A. Shellshock
    B. Rootshock
    C. Shellbash
    D. Rootshell

  • Question 185:

    Blake is in charge of securing all 20 of his company's servers. He has enabled hardware and software firewalls, hardened the operating systems, and disabled all unnecessary services on all the servers. Unfortunately, there is proprietary AS400 emulation software that must run on one of the servers that requires the telnet service to function properly.

    Blake is especially concerned about this since telnet can be a very large security risk in an organization. Blake is concerned about how this particular server might look to an outside attacker so he decides to perform some footprinting, scanning, and penetration tests on the server. Blake telnets into the server using Port 80 and types in the following command: HEAD / HTTP/1.0

    After pressing enter twice, Blake gets the following results: What has Blake just accomplished?

    A. Downloaded a file to his local computer
    B. Submitted a remote command to crash the server
    C. Poisoned the local DNS cache of the server
    D. Grabbed the Operating System banner

  • Question 186:

    While performing ping scans into a target network you get a frantic call from the organization's security team. They report that they are under a denial of service attack.

    When you stop your scan, the smurf attack event stops showing up on the organization's IDS monitor. How can you modify your scan to prevent triggering this event in the IDS?

    A. Scan more slowly.
    B. Do not scan the broadcast IP.
    C. Spoof the source IP address.
    D. Only scan the Windows systems.

  • Question 187:

    The "Gray box testing" methodology enforces what kind of restriction?

    A. Only the external operation of a system is accessible to the tester.
    B. Only the internal operation of a system is known to the tester.
    C. The internal operation of a system is completely known to the tester.
    D. The internal operation of a system is only partly accessible to the tester.

  • Question 188:

    Samantha was hired to perform an internal security test of XYZ. She quickly realized that all networks are making use of switches instead of traditional hubs. This greatly limits her ability to gather information through network sniffing. Which of the following techniques can she use to gather information from the switched network or to disable some of the traffic isolation features of the switch? (Choose two)

    A. Ethernet Zapping
    B. MAC Flooding
    C. Sniffing in promiscuous mode
    D. ARP Spoofing

  • Question 189:

    What is the default Password Hash Algorithm used by NTLMv2?

    A. MD4
    B. DES
    C. SHA-1
    D. MD5

  • Question 190:

    A network security administrator is worried about potential man-in-the-middle attacks when users access a corporate web site from their workstations. Which of the following is the best remediation against this type of attack?

    A. Implementing server-side PKI certificates for all connections
    B. Mandating only client-side PKI certificates for all connections
    C. Requiring client and server PKI certificates for all connections
    D. Requiring strong authentication for all DNS queries

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V8 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.