Exam Details

  • Exam Code
    :312-50V11
  • Exam Name
    :EC-Council Certified Ethical Hacker (C|EH v11)
  • Certification
    :EC-COUNCIL Certifications
  • Vendor
    :EC-COUNCIL
  • Total Questions
    :528 Q&As
  • Last Updated
    :Apr 09, 2025

EC-COUNCIL EC-COUNCIL Certifications 312-50V11 Questions & Answers

  • Question 51:

    Which protocol is used for setting up secure channels between two devices, typically in VPNs?

    A. PEM

    B. ppp

    C. IPSEC

    D. SET

  • Question 52:

    What port number is used by LDAP protocol?

    A. 110

    B. 389

    C. 464

    D. 445

  • Question 53:

    Jason, an attacker, targeted an organization to perform an attack on its Internet-facing web server with the intention of gaining access to backend servers, which are protected by a firewall. In this process, he used a URL https://xyz.com/feed.php?url:externaIsile.com/feed/to to obtain a remote feed and altered the URL input to the local host to view all the local resources on the target server. What is the type of attack Jason performed In the above scenario?

    A. website defacement

    B. Server-side request forgery (SSRF) attack

    C. Web server misconfiguration

    D. web cache poisoning attack

  • Question 54:

    Which of the following options represents a conceptual characteristic of an anomaly-based IDS over a signature-based IDS?

    A. Produces less false positives

    B. Can identify unknown attacks

    C. Requires vendor updates for a new threat

    D. Cannot deal with encrypted network traffic

  • Question 55:

    In the context of Windows Security, what is a 'null' user?

    A. A user that has no skills

    B. An account that has been suspended by the admin

    C. A pseudo account that has no username and password

    D. A pseudo account that was created for security administration purpose

  • Question 56:

    The security team of Debry Inc. decided to upgrade Wi-Fi security to thwart attacks such as dictionary attacks and key recovery attacks. For this purpose, the security team started implementing cutting-edge technology that uses a modern key establishment protocol called the simultaneous authentication of equals (SAE), also known as dragonfly key exchange, which replaces the PSK concept. What is the Wi-Fi encryption technology implemented by Debry Inc.?

    A. WEP

    B. WPA

    C. WPA2

    D. WPA3

  • Question 57:

    What type of a vulnerability/attack is it when the malicious person forces the user's browser to send an authenticated request to a server?

    A. Session hijacking

    B. Server side request forgery

    C. Cross-site request forgery

    D. Cross-site scripting

  • Question 58:

    Study the snort rule given below: From the options below, choose the exploit against which this rule applies.

    A. WebDav

    B. SQL Slammer

    C. MS Blaster

    D. MyDoom

  • Question 59:

    What is one of the advantages of using both symmetric and asymmetric cryptography in SSL/TLS?

    A. Symmetric algorithms such as AES provide a failsafe when asymmetric methods fail.

    B. Asymmetric cryptography is computationally expensive in comparison. However, it is well-suited to securely negotiate keys for use with symmetric cryptography.

    C. Symmetric encryption allows the server to securely transmit the session keys out-of- band.

    D. Supporting both types of algorithms allows less-powerful devices such as mobile phones to use symmetric encryption instead.

  • Question 60:

    By performing a penetration test, you gained access under a user account. During the test, you established a connection with your own machine via the SMB service and occasionally entered your login and password in plaintext.

    Which file do you have to clean to clear the password?

    A. .X session-log

    B. .bashrc

    C. .profile

    D. .bash_history

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only EC-COUNCIL exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your 312-50V11 exam preparations and EC-COUNCIL certification application, do not hesitate to visit our Vcedump.com to find your solutions here.