312-50V8 Exam Details

  • Exam Code
    :312-50V8
  • Exam Name
    :Certified Ethical Hacker v8
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1008 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V8 Online Questions & Answers

  • Question 641:

    Bank of Timbuktu is a medium-sized, regional financial institution in Timbuktu. The bank has deployed a new Internet-accessible Web application recently. Customers can access their account balances, transfer money between accounts, pay bills and conduct online financial business using a Web browser.

    John Stevens is in charge of information security at Bank of Timbuktu. After one month in production, several customers have complained about the Internet enabled banking application. Strangely, the account balances of many of the bank's customers had been changed! However, money hasn't been removed from the bank; instead, money was transferred between accounts. Given this attack profile, John Stevens reviewed the Web application's logs and found the following entries: What kind of attack did the Hacker attempt to carry out at the bank?

    A. Brute force attack in which the Hacker attempted guessing login ID and password from password cracking tools.
    B. The Hacker attempted Session hijacking,in which the Hacker opened an account with the bank,then logged in to receive a session ID,guessed the next ID and took over Jason's session.
    C. The Hacker used a generator module to pass results to the Web server and exploited Web application CGI vulnerability.
    D. The Hacker first attempted logins with suspected user names,then used SQL Injection to gain access to valid bank login IDs.

  • Question 642:

    According to the CEH methodology, what is the next step to be performed after footprinting?

    A. Enumeration
    B. Scanning
    C. System Hacking
    D. Social Engineering
    E. Expanding Influence

  • Question 643:

    This attack technique is used when a Web application is vulnerable to an SQL Injection but the results of the Injection are not visible to the attacker.

    A. Unique SQL Injection
    B. Blind SQL Injection
    C. Generic SQL Injection
    D. Double SQL Injection

  • Question 644:

    Ursula is a college student at a University in Amsterdam. Ursula originally went to college to study engineering but later changed to marine biology after spending a month at sea with her friends. These friends frequently go out to sea to follow and harass fishing fleets that illegally fish in foreign waters. Ursula eventually wants to put companies practicing illegal fishing out of business. Ursula decides to hack into the parent company's computers and destroy critical data knowing fully well that, if caught, she probably would be sent to jail for a very long time.

    What would Ursula be considered?

    A. Ursula would be considered a gray hat since she is performing an act against illegal activities.
    B. She would be considered a suicide hacker.
    C. She would be called a cracker.
    D. Ursula would be considered a black hat.

  • Question 645:

    Which of the following statements is TRUE?

    A. Sniffers operation on Layer 3 of the OSI model
    B. Sniffers operation on Layer 2 of the OSI model
    C. Sniffers operation on the Layer 1 of the OSI model
    D. Sniffers operation on both Layer 2 and Layer 3 of the OSImodel

  • Question 646:

    Which type of attack is port scanning?

    A. Web server attack
    B. Information gathering
    C. Unauthorized access
    D. Denial of service attack

  • Question 647:

    You want to know whether a packet filter is in front of 192.168.1.10. Pings to 192.168.1.10 don't get answered. A basic nmap scan of 192.168.1.10 seems to hang without returning any information. What should you do next?

    A. Run NULL TCP hping2 against 192.168.1.10
    B. Run nmap XMAS scan against 192.168.1.10
    C. The firewall is blocking all the scans to 192.168.1.10
    D. Use NetScan Tools Pro to conduct the scan

  • Question 648:

    What are the three phases involved in security testing?

    A. Reconnaissance,Conduct,Report
    B. Reconnaissance,Scanning,Conclusion
    C. Preparation,Conduct,Conclusion
    D. Preparation,Conduct,Billing

  • Question 649:

    TCP packets transmitted in either direction after the initial three-way handshake will have which of the following bit set?

    A. SYN flag
    B. ACK flag
    C. FIN flag
    D. XMAS flag

  • Question 650:

    What sequence of packets is sent during the initial TCP three-way handshake?

    A. SYN,SYN-ACK,ACK
    B. SYN,URG,ACK
    C. SYN,ACK,SYN-ACK
    D. FIN,FIN-ACK,ACK

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V8 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.