Certified Ethical Hacker CEH Exam Questions & Answers

Practice 100 free Certified Ethical Hacker CEH exam questions with answers and community-discussed explanations. Each question has its own page where you can reveal the correct answer and debate it in the comments.

All 100 questions

  1. Q1 You are assisting a member of your organization's security team during an incident response. The team member asks you to determine if…
  2. Q2 Dion Training has just installed a brand new email server. Which of the following DNS records would need to be created to…
  3. Q3 A Management Information Base (MIB) is a database that describes different objects/parameters (such as CPU utilization, memory, temperature, power etc.) that can…
  4. Q4 An attacker uses text messaging to socially engineer a user into providing sensitive information. Which social engineering attack type is in use?
  5. Q5 Which of the following type of threats did the Stuxnet attack rely on to cross an airgap between a business and an…
  6. Q6 Which of the following tools would be a good choice to clear Windows logs after an attack?
  7. Q7 Which of the following best describes the Bettercap tool?
  8. Q8 Which of the following IDS is more relevant for a large environment having network segmentation for critical data?
  9. Q9 Danny, a black hat hacker, plans to scan the network of an organization using Nmap to identify potential vulnerabilities. He uses the…
  10. Q10 Which of the following best describes privilege escalation?
  11. Q11 A credit card transaction requires two factor authentication. First is the credit card which needs to be swiped and second one is…
  12. Q12 IPSec operates at which layer of OSI Model?
  13. Q13 As a red hat hacker, you try to get certain sensitive information from the employee of HDA Inc., by making a false…
  14. Q14 What is passive sniffing?
  15. Q15 Which of the following statements is incorrect regarding ethical hacking?
  16. Q16 Danny, a black hat hacker, used Nmap to scan a network. Output confirmed presence of a firewall. Now he wants to determine…
  17. Q17 Which of the following can be used to edit the local security policy of a Windows machine?
  18. Q18 How do fraudsters trick their victims in a phishing attack?
  19. Q19 Which of the following Linux commands is used to map a domain name to their corresponding IP address?
  20. Q20 If you try to ping a target that exists but gets no answer or a response that says the target can't be…
  21. Q21 A penetration tester wants to build a workstation that will be used to brute force hash digests. Which of the following is…
  22. Q22 Nmap tool will help you to capture details about the PUT and DELETE methods supported by a web server. Which of the…
  23. Q23 Identify the tool from below description: ● Tool prevents and detects the network intrusion ● Tool can function as a network sniffer…
  24. Q24 Identify the tool with following description: Tool can be used as a proxy and save every request and response between browser and…
  25. Q25 A coworker is conducting open-source intelligence gathering for an upcoming penetration test against Dion Training. You look over their shoulder and saw…
  26. Q26 Jennifer decided that the licensing cost for a piece of video editing software was too expensive. Instead, she decided to download a…
  27. Q27 Identify the tool with following description: ? Tool is a Java based web application testing tool. ? Tool can be used as…
  28. Q28 Which of the following statements is true regarding Kismet?
  29. Q29 As the Information Security Manager of HDA Inc., you are responsible for monitoring and securing the company's network infrastructure. You have identified…
  30. Q30 Which of the following best describes "Reconnaissance"?
  31. Q31 You are planning to exploit a network-based vulnerability against an organization as part of a penetration test. You attempted to connect your…
  32. Q32 A recent threat has been announced in the cybersecurity world, stating a critical vulnerability in a particular operating system's kernel. Unfortunately, your…
  33. Q33 Danny, a black hat hacker, took control over an employee having limited rights. However, Danny was able to download confidential files that…
  34. Q34 Danny, a black hat hacker, plans to scan the network of an organization using Nmap to identify potential vulnerabilities. However, he does…
  35. Q35 Danny, a black hat hacker, uses Google to look for information about the target organization that is open to the public. Which…
  36. Q36 You are a white hat hacker of HDA Inc. You want to test a critical database. You use following method to access…
  37. Q37 An attacker leverages IoT vulnerabilities to shut off the air conditioning on the data floor, causing a major disruption. What is this…
  38. Q38 Which of the following architecture layers is the first to handle data?
  39. Q39 Jason is conducting a penetration test against an organization's Windows network. He then enters a command into the shell and receives the…
  40. Q40 As an information security expert, you have been assigned to perform a blind penetration test for the systems of HDA Inc. You…
  41. Q41 In Amazon’s EC2, virtual machines are provided and can be controlled through a service API. Which of the following best defines this…
  42. Q42 You are a recently qualified certified ethical hacker. As a passion to contribute to cyber security, sometimes you test the network of…
  43. Q43 Which of the following best describes the function of the logic tier?
  44. Q44 A vulnerability scan has returned the following results: -=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-  Detailed Results  10.56.17.21 (APACHE-2.4)    Windows Shares  Category: Windows  CVE ID: -  Vendor…
  45. Q45 Which of the following best describes the function of USB Dumper?
  46. Q46 You are information security manager of HDA Inc. Your CEO is traveling to India carrying a mission critical file on his laptop.…
  47. Q47 Cross site request forgery (CSRF) attack is successful only if:
  48. Q48 Which of the following tools provides instant visibility and continuous protection for servers in any combination of data centers, private clouds, and…
  49. Q49 What technology is NOT PKI x.509 compliant and cannot be used in various secure functions?
  50. Q50 Matt is conducting a penetration test against Dion Training's network. This engagement aims to simulate an advanced persistent threat and demonstrate persistence…
  51. Q51 Frank and John have started a secret club together. They want to ensure that when they send messages to each other, they…
  52. Q52 Which of the following are valid concerns when migrating to a serverless architecture? (SELECT THREE)
  53. Q53 Which of the following best describes the function of the Maltego tool?
  54. Q54 Danny, a black hat hacker, plans to take control of a computer which has very low network activity and to use the…
  55. Q55 Danny, a black hat hacker, sends a huge number of email spams. He uses a SMTP server that allows email relay without…
  56. Q56 What technique is an attacker using if they review data and publicly available information to gather intelligence about the target organization without…
  57. Q57 You are a white hat hacker of HDA Inc. You want to test a critical database. You use SQL injection with following…
  58. Q58 Which flags are sent with the packets in TCP Maimon scan?
  59. Q59 Which technique is used with the ProxyChains command to allow a penetration tester to pivot to a new subnet?
  60. Q60 Which of the following commands will display all current shares on the Windows machine?
  61. Q61 Which of the following nmap commands should be utilized by a penetration tester that wants to scan every TCP registered port with…
  62. Q62 As an information security manager of HDA Inc., you are worried about loss of cryptographic keys due to any disaster, malfunction or…
  63. Q63 What is the most effective way to protect against network sniffing?
  64. Q64 You are information security manager at HDA. Few employees at HDA (having IP 11.11.0.1/24) browse the www.bank.com (IP 12.12.0.1) for official banking…
  65. Q65 Which of the following is not a basic component of how the IoT works?
  66. Q66 Which of the following describes one of the functions of IPsec?
  67. Q67 Identify the type of virus from below description: ● Virus has capability to change its own code to hide itself from anti-virus…
  68. Q68 Which of the following is usually not considered when evaluating the attack surface of an organization?
  69. Q69 Within a PKI, which of the following verifies the applicant?
  70. Q70 Which of the following represents the highest risk to an organization’s IT security?
  71. Q71 Which of the following best describes the "Address Resolution Protocol (ARP)"?
  72. Q72 You have several plain-text logs to review. Which of the following commands can be used to perform fast, efficient searches of the…
  73. Q73 As an information security manager of HDA Inc., you have deployed Wireshark in your organization for network troubleshooting, analysis, software and communication…
  74. Q74 You are information security manager at HDA Bank. Bank is about to finalize a magazine on information security awareness for its clients.…
  75. Q75 You hire guards and post guard dogs on the property. Which kind of security measure have you put into place?
  76. Q76 A project lead reviews the statement of work for an upcoming project that is focused on identifying potential weaknesses in the organization’s…
  77. Q77 Which of the following ports is used by LDAP by default?
  78. Q78 Your smartphone begins to receive unsolicited messages while eating lunch at the restaurant across the street from your office. What might cause…
  79. Q79 Which of the following consists of a publicly available set of databases containing domain name registration contact information?
  80. Q80 Which attack following code indicates? #!/usr/bin/python import socket # Create a list of strings with increasing number of A's buffer = []…
  81. Q81 You just received an email from Bob, your investment banker, stating that he completed the wire transfer of $10,000 to your bank…
  82. Q82 Sender wants to send a message to the receiver. To ensure confidentiality, the sender encrypts the message. Sender also digitally signs the…
  83. Q83 A pentester is trying to map the organization's internal network. The analyst enters the following command (nmap -n -sS -T4 -p 80…
  84. Q84 As the Information Security Manager of HDA Inc., you are looking for an automated tool that can scan the web applications and…
  85. Q85 Which IDS evasion technique involves an attacker splitting attack traffic into many packets, with the intention of avoiding detection by an Intrusion…
  86. Q86 Which of the following best describes a "multipartite virus"?
  87. Q87 Which of the following is the best control against DNS Cache poisoning?
  88. Q88 A pen tester connects a laptop to a switch port and enables promiscuous mode on the NIC. He then turns on Wireshark…
  89. Q89 Danny, a black hat hacker, has taken control of a compromised network. Now, he wants to identify the versions of different services…
  90. Q90 Danny, a black hat hacker, wants to determine the type of firewall deployed at the target organization. He sends an ACK packet…
  91. Q91 Which of the following application security testing methods combines both Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to…
  92. Q92 Which of the following tools is commonly used for injecting HTML code in man-in-the-middle attacks?
  93. Q93 Which of the following tools would you use to audit a multi-cloud environment?
  94. Q94 What remediation strategies are the MOST effective in reducing the risk to an embedded ICS from a network-based compromise? (Select TWO)
  95. Q95 When you give command ‘nmap 192.168.1.64/30’, which IPs will be scanned?
  96. Q96 What enables Unicode characters to be represented in an ASCII-compatible length of 1 to 4 bytes?
  97. Q97 Which of the following is a true statement regarding encryption keys?
  98. Q98 An attacker waits until a user has an authenticated session with the server he really wants to attack. He then sends a…
  99. Q99 As a white hat hacker of HDA Inc., you want to test a critical database by simulating the SQL injection attacks based…
  100. Q100 Which of the following best describes quantum cryptography?

Preparing For

Your Certification?

255+ certifications
Detailed explanations
Free PDF samples

Has All The Questions You Need