EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 591:

    One advantage of an application-level firewall is the ability to

    A. filter packets at the network level.
    B. filter specific commands, such as http:post.
    C. retain state information for each packet.
    D. monitor tcp handshaking.

  • Question 592:

    The programmers on your team are analyzing the free, open source software being used to run FTP services on a server in your organization. They notice that there is excessive number of functions in the source code that might lead to buffer overflow. These C++ functions do not check bounds. Identify the line in the source code that might lead to buffer overflow?

    A. 9A.9
    B. 17B.17
    C. 20C.20
    D. 32D.32
    E. 35E.35

  • Question 593:

    What is "Hacktivism"?

    A. Hacking for a cause
    B. Hacking ruthlessly
    C. An association which groups activists
    D. None of the above

  • Question 594:

    Jake is a network administrator who needs to get reports from all the computer and network devices on his network. Jake wants to use SNMP but is afraid that won't be secure since passwords and messages are in clear text. How can Jake gather network information in a secure manner?

    A. He can use SNMPv3
    B. Jake can use SNMPrev5
    C. He can use SecWMI
    D. Jake can use SecSNMP

  • Question 595:

    Which one of the following is defined as the process of distributing incorrect Internet Protocol (IP) addresses/names with the intent of diverting traffic?

    A. Network aliasing
    B. Domain Name Server (DNS) poisoning
    C. Reverse Address Resolution Protocol (ARP)
    D. Port scanning

  • Question 596:

    What is the best defense against privilege escalation vulnerability?

    A. Patch systems regularly and upgrade interactive login privileges at the system administrator level.
    B. Run administrator and applications on least privileges and use a content registry for tracking.
    C. Run services with least privileged accounts and implement multi-factor authentication and authorization.
    D. Review user roles and administrator privileges for maximum utilization of automation services.

  • Question 597:

    Jane has just accessed her preferred e-commerce web site and she has seen an item she would like to buy. Jane considers the price a bit too steep; she looks at the page source code and decides to save the page locally to modify some of the page variables. In the context of web application security, what do you think Jane has changed?

    A. An integer variable
    B. A 'hidden' price value
    C. A 'hidden' form field value
    D. A page cannot be changed locally; it can only be served by a web server

  • Question 598:

    Attackers send an ACK probe packet with random sequence number, no response means port is filtered (Stateful firewall is present) and RST response means the port is not filtered. What type of Port Scanning is this?

    A. RST flag scanning
    B. FIN flag scanning
    C. SYN flag scanning
    D. ACK flag scanning

  • Question 599:

    Which of the following describes a component of Public Key Infrastructure (PKI) where a copy of a private key is stored to provide third-party access and to facilitate recovery operations?

    A. Key registry
    B. Recovery agent
    C. Directory
    D. Key escrow

  • Question 600:

    Which of the following identifies the three modes in which Snort can be configured to run?

    A. Sniffer, Packet Logger, and Network Intrusion Detection System
    B. Sniffer, Network Intrusion Detection System, and Host Intrusion Detection System
    C. Sniffer, Host Intrusion Prevention System, and Network Intrusion Prevention System
    D. Sniffer, Packet Logger, and Host Intrusion Prevention System

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.