CEH-001 Exam Details

  • Exam Code
    :CEH-001
  • Exam Name
    :Certified Ethical Hacker (CEH)
  • Certification
    :GAQM Certifications
  • Vendor
    :GAQM
  • Total Questions
    :878 Q&As
  • Last Updated
    :May 30, 2026

GAQM CEH-001 Online Questions & Answers

  • Question 171:

    For messages sent through an insecure channel, a properly implemented digital signature gives the receiver reason to believe the message was sent by the claimed sender. While using a digital signature, the message digest is encrypted with which key?

    A. Sender's public key
    B. Receiver's private key
    C. Receiver's public key
    D. Sender's private key

  • Question 172:

    Which address translation scheme would allow a single public IP address to always correspond to a single machine on an internal network, allowing "server publishing"?

    A. Overloading Port Address Translation
    B. Dynamic Port Address Translation
    C. Dynamic Network Address Translation
    D. Static Network Address Translation

  • Question 173:

    __________ is found in all versions of NTFS and is described as the ability to fork file data into existing files without affecting their functionality, size, or display to traditional file browsing utilities like dir or Windows Explorer

    A. Alternate Data Streams
    B. Merge Streams
    C. Steganography
    D. NetBIOS vulnerability

  • Question 174:

    What is the advantage in encrypting the communication between the agent and the monitor in an Intrusion Detection System?

    A. Encryption of agent communications will conceal the presence of the agents
    B. The monitor will know if counterfeit messages are being generated because they will not be encrypted
    C. Alerts are sent to the monitor when a potential intrusion is detected
    D. An intruder could intercept and delete data or alerts and the intrusion can go undetected

  • Question 175:

    TCP/IP Session Hijacking is carried out in which OSI layer?

    A. Datalink layer
    B. Transport layer
    C. Network layer
    D. Physical layer

  • Question 176:

    How do you defend against ARP Poisoning attack? (Select 2 answers)

    A. Enable DHCP Snooping Binding Table
    B. Restrict ARP Duplicates
    C. Enable Dynamic ARP Inspection
    D. Enable MAC snooping Table

  • Question 177:

    Which element of Public Key Infrastructure (PKI) verifies the applicant?

    A. Certificate authority
    B. Validation authority
    C. Registration authority
    D. Verification authority

  • Question 178:

    Which is the right sequence of packets sent during the initial TCP three way handshake?

    A. FIN, FIN-ACK, ACK
    B. SYN, URG, ACK
    C. SYN, ACK, SYN-ACK
    D. SYN, SYN-ACK, ACK

  • Question 179:

    Which of the following parameters enables NMAP's operating system detection feature?

    A. NMAP -sV
    B. NMAP -oS
    C. NMAP -sR
    D. NMAP -O

  • Question 180:

    Network Intrusion Detection systems can monitor traffic in real time on networks.

    Which one of the following techniques can be very effective at avoiding proper detection?

    A. Fragmentation of packets.
    B. Use of only TCP based protocols.
    C. Use of only UDP based protocols.
    D. Use of fragmented ICMP traffic only.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only GAQM exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your CEH-001 exam preparations and GAQM certification application, do not hesitate to visit our Vcedump.com to find your solutions here.