312-50V8 Exam Details

  • Exam Code
    :312-50V8
  • Exam Name
    :Certified Ethical Hacker v8
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :1008 Q&As
  • Last Updated
    :May 31, 2026

EC-COUNCIL 312-50V8 Online Questions & Answers

  • Question 671:

    StackGuard (as used by Immunix), ssp/ProPolice (as used by OpenBSD), and Microsoft's /GS option use _____ defense against buffer overflow attacks.

    A. Canary
    B. Hex editing
    C. Format checking
    D. Non-executing stack

  • Question 672:

    What type of session hijacking attack is shown in the exhibit?

    A. Cross-site scripting Attack
    B. SQL Injection Attack
    C. Token sniffing Attack
    D. Session Fixation Attack

  • Question 673:

    Which of the following activities will NOT be considered as passive footprinting?

    A. Go through the rubbish to find out any information that might have been discarded.
    B. Search on financial site such as Yahoo Financial to identify assets.
    C. Scan the range of IP address found in the target DNS database.
    D. Perform multiples queries using a search engine.

  • Question 674:

    An attacker has captured a target file that is encrypted with public key cryptography. Which of the attacks below is likely to be used to crack the target file?

    A. Timing attack
    B. Replay attack
    C. Memory trade-off attack
    D. Chosen plain-text attack

  • Question 675:

    A company's security states that all web browsers must automatically delete their HTTP browser cookies upon terminating. What sort of security breach is this policy attempting to mitigate?

    A. Attempts by attackers to determine the user's Web browser usage patterns, including when sites were visited and for how long.
    B. Attempts by attackers to access passwords stored on the user's computer without the user's knowledge.
    C. Attempts by attackers to access Web sites that trust the Web browser user by stealing the user's authentication credentials.
    D. Attempts by attacks to access the user and password information stores in the company's SQL database.

  • Question 676:

    What did the following commands determine?

    C:

    user2sid \earth guest S-1-5-21-343818398-789336058-1343024091-501 C:sid2user 5 21 343818398 789336058 1343024091 500 Name is Joe Domain is EARTH

    A. That the Joe account has a SID of 500
    B. These commands demonstrate that the guest account has NOT been disabled
    C. These commands demonstrate that the guest account has been disabled
    D. That the true administrator is Joe
    E. Issued alone,these commands prove nothing

  • Question 677:

    Which of the following network attacks takes advantage of weaknesses in the fragment reassembly functionality of the TCP/IP protocol stack?

    A. Teardrop
    B. SYN flood
    C. Smurf attack
    D. Ping of death

  • Question 678:

    How can you determine if an LM hash you extracted contains a password that is less than 8 characters long?

    A. There is no way to tell because a hash cannot be reversed
    B. The right most portion of the hash is always the same
    C. The hash always starts with AB923D
    D. The left most portion of the hash is always the same
    E. A portion of the hash will be all 0's

  • Question 679:

    Which address translation scheme would allow a single public IP address to always correspond to a single machine on an internal network, allowing "server publishing"?

    A. Overloading Port Address Translation
    B. Dynamic Port Address Translation
    C. Dynamic Network Address Translation
    D. Static Network Address Translation

  • Question 680:

    You have successfully run a buffer overflow attack against a default IIS installation running on a Windows 2000 Server. The server allows you to spawn a shell. In order to perform the actions you intend to do, you need elevated permission. You need to know what your current privileges are within the shell.

    Which of the following options would be your current privileges?

    A. Administrator
    B. IUSR_COMPUTERNAME
    C. LOCAL_SYSTEM
    D. Whatever account IIS was installed with

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V8 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.