EC0-350 Exam Details

  • Exam Code
    :EC0-350
  • Exam Name
    :Ethical Hacking And Countermeasures (CEH)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :878 Q&As
  • Last Updated
    :Jul 15, 2026

EC-COUNCIL EC0-350 Online Questions & Answers

  • Question 661:

    Which tool is used to automate SQL injections and exploit a database by forcing a given web application to connect to another database controlled by a hacker?

    A. DataThief
    B. NetCat
    C. Cain and Abel
    D. SQLInjector

  • Question 662:

    Joseph has just been hired on to a contractor company of the Department of Defense as their Senior Security Analyst. Joseph has been instructed on the company's strict security policies that have been implemented, and the policies that have yet to be put in place. Per the Department of Defense, all DoD users and the users of their contractors must use two- factor authentication to access their networks. Joseph has been delegated the task of researching and implementing the best two-factor authentication method for his company. Joseph's supervisor has told him that they would like to use some type of hardware device in tandem with a security or identifying pin number. Joseph's company has already researched using smart cards and all the resources needed to implement them, but found the smart cards to not be cost effective. What type of device should Joseph use for two- factor authentication?

    A. Biometric device
    B. OTP
    C. Proximity cards
    D. Security token

  • Question 663:

    An attacker is attempting to telnet into a corporation's system in the DMZ. The attacker doesn't want to get caught and is spoofing his IP address. After numerous tries he remains unsuccessful in connecting to the system. The attacker rechecks that the target system is actually listening on Port 23 and he verifies it with both nmap and hping2. He is still unable to connect to the target system. What could be the reason?

    A. The firewall is blocking port 23 to that system
    B. He needs to use an automated tool to telnet in
    C. He cannot spoof his IP and successfully use TCP
    D. He is attacking an operating system that does not reply to telnet even when open

  • Question 664:

    If an e-commerce site was put into a live environment and the programmers failed to remove the secret entry point that was used during the application development, what is this secret entry point known as?

    A. SDLC process
    B. Honey pot
    C. SQL injection
    D. Trap door

  • Question 665:

    Exhibit

    Joe Hacker runs the hping2 hacking tool to predict the target host's sequence numbers in one of the hacking session. What does the first and second column mean? Select two.

    A. The first column reports the sequence number
    B. The second column reports the difference between the current and last sequence number
    C. The second column reports the next sequence number
    D. The first column reports the difference between current and last sequence number

  • Question 666:

    Which of the following is not an effective countermeasure against replay attacks?

    A. Digital signatures
    B. Time Stamps
    C. System identification
    D. Sequence numbers

  • Question 667:

    The fundamental difference between symmetric and asymmetric key cryptographic systems is that symmetric key cryptography uses which of the following?

    A. Multiple keys for non-repudiation of bulk data
    B. Different keys on both ends of the transport medium
    C. Bulk encryption for data transmission over fiber
    D. The same key on each end of the transmission medium

  • Question 668:

    Hayden is the network security administrator for her company, a large finance firm based in Miami. Hayden just returned from a security conference in Las Vegas where they talked about all kinds of old and new security threats; many of which she did not know of. Hayden is worried about the current security state of her company's network so she decides to start scanning the network from an external IP address. To see how some of the hosts on her network react, she sends out SYN packets to an IP range. A number of IPs responds with a SYN/ACK response. Before the connection is established she sends RST packets to those hosts to stop the session. She does this to see how her intrusion detection system will log the traffic. What type of scan is Hayden attempting here?

    A. Hayden is attempting to find live hosts on her company's network by using an XMAS scan
    B. She is utilizing a SYN scan to find live hosts that are listening on her network
    C. The type of scan, she is using is called a NULL scan
    D. Hayden is using a half-open scan to find live hosts on her network

  • Question 669:

    Jackson discovers that the wireless AP transmits 128 bytes of plaintext, and the station responds by encrypting the plaintext. It then transmits the resulting ciphertext using the same key and cipher that are used by WEP to encrypt subsequent network traffic. What authentication mechanism is being followed here?

    A. no authentication
    B. single key authentication
    C. shared key authentication
    D. open system authentication

  • Question 670:

    What happens during a SYN flood attack?

    A. TCP connection requests floods a target machine is flooded with randomized source address and ports for the TCP ports.
    B. A TCP SYN packet, which is a connection initiation, is sent to a target machine, giving the target host's address as both source and destination, and is using the same port on the target host as both source and destination.
    C. A TCP packet is received with the FIN bit set but with no ACK bit set in the flags field.
    D. A TCP packet is received with both the SYN and the FIN bits set in the flags field.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your EC0-350 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.