EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 411:

    _____ is the process of converting something from one representation to the simplest form. It deals with the way in which systems convert data from one form to another.

    A. Canonicalization
    B. Character Mapping
    C. Character Encoding
    D. UCS transformation formats

  • Question 412:

    One of the effective DoS/DDoS countermeasures is 'Throttling'. Which statement correctly defines this term?

    A. Set up routers that access a server with logic to adjust incoming traffic to levels that will be safe for the server to process
    B. Providers can increase the bandwidth on critical connections to prevent them from going down in the event of an attack
    C. Replicating servers that can provide additional failsafe protection
    D. Load balance each server in a multiple-server architecture

  • Question 413:

    The programmers on your team are analyzing the free, open source software being used to run FTP services on a server. They notice that there is an excessive number of fgets() and gets() on the source code. These C++ functions do not check bounds.

    What kind of attack is this program susceptible to?

    A. Buffer of Overflow
    B. Denial of Service
    C. Shatter Attack
    D. Password Attack

  • Question 414:

    Bob reads an article about how insecure wireless networks can be. He gets approval from his management to implement a policy of not allowing any wireless devices on the network. What other steps does Bob have to take in order to successfully implement this? (Select 2 answer.)

    A. Train users in the new policy.
    B. Disable all wireless protocols at the firewall.
    C. Disable SNMP on the network so that wireless devices cannot be configured.
    D. Continuously survey the area for wireless devices.

  • Question 415:

    You are footprinting an organization and gathering competitive intelligence. You visit the company's website for contact information and telephone numbers but do not find them listed there. You know they had the entire staff directory listed on their website 12 months ago but now it is not there. Is there any way you can retrieve information from a website that is outdated?

    A. Visit Google's search engine and view the cached copy
    B. Crawl the entire website and store them into your computer
    C. Visit Archive.org web site to retrieve the Internet archive of the company's website
    D. Visit the company's partners and customers website for this information

  • Question 416:

    Why would you consider sending an email to an address that you know does not exist within the company you are performing a Penetration Test for?

    A. To determine who is the holder of the root account
    B. To perform a DoS
    C. To create needless SPAM
    D. To illicit a response back that will reveal information about email servers and how they treat undeliverable mail
    E. To test for virus protection

  • Question 417:

    Jess the hacker runs L0phtCrack's built-in sniffer utility that grabs SMB password hashes and stores them for offline cracking. Once cracked, these passwords can provide easy access to whatever network resources the user account has access to. But Jess is not picking up hashes from the network. Why?

    A. The network protocol is configured to use SMB Signing
    B. The physical network wire is on fibre optic cable
    C. The network protocol is configured to use IPSEC
    D. L0phtCrack SMB sniffing only works through Switches and not Hubs

  • Question 418:

    The precaution of prohibiting employees from bringing personal computing devices into a facility is what type of security control?

    A. Physical
    B. Procedural
    C. Technical
    D. Compliance

  • Question 419:

    What is a sniffing performed on a switched network called?

    A. Spoofed sniffing
    B. Passive sniffing
    C. Direct sniffing
    D. Active sniffing

  • Question 420:

    SSL has been seen as the solution to a lot of common security problems. Administrator will often time make use of SSL to encrypt communications from points A to point

    B. Why do you think this could be a bad idea if there is an Intrusion Detection System deployed to monitor the traffic between point A and B?

    A. SSL is redundant if you already have IDS's in place
    B. SSL will trigger rules at regular interval and force the administrator to turn them off
    C. SSL will slow down the IDS while it is breaking the encryption to see the packet content
    D. SSL will blind the content of the packet and Intrusion Detection Systems will not be able to detect them

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.