最新的ECCouncil Certified Ethical Hacker Exam (CEHv13) - 312-50v13免費考試真題
A Java app uses ObjectInputStream.readObject() on untrusted data. What is the risk?
正確答案: D
說明:(僅 Fast2test 成員可見)
During a quarterly security audit at a financial services company in Charlotte, North Carolina, you are tasked with reviewing exposed services on legacy servers inherited from a third-party vendor.
While scanning, you discover that TCP port 1434 is open on a database node that is not listed in the company's active inventory. The IT team has no records explaining why this service is running, and you are asked to determine whether the exposure of this port could indicate an unnecessary database-related risk. Based on standardized port assignments, which service is most likely running on this port and requires further review?
While scanning, you discover that TCP port 1434 is open on a database node that is not listed in the company's active inventory. The IT team has no records explaining why this service is running, and you are asked to determine whether the exposure of this port could indicate an unnecessary database-related risk. Based on standardized port assignments, which service is most likely running on this port and requires further review?
正確答案: D
說明:(僅 Fast2test 成員可見)
During a routine security audit at a large financial services organization, the IT team detects severe network latency and recurring bandwidth exhaustion across its corporate WAN links. Upon deeper investigation, they discover that several employee workstations and IoT-connected devices are unknowingly transmitting enormous volumes of traffic to numerous external IP addresses. These devices, all exhibiting similar traffic patterns and command-response behaviors, are found to be under the control of a remote botnet operator. The incident raises serious concerns about insider-originated denial-of-service activity that is also affecting external entities. Which type of denial-of-service attack best describes the organization's current situation?
正確答案: C
說明:(僅 Fast2test 成員可見)
As a cybersecurity analyst, you were assigned the task of analyzing the traffic patterns of your company's network. You started noticing irregularities that suggested a potential scanning attempt. The attacker appears to be quite sophisticated, operating slowly and meticulously, making it a challenge to detect or trace. Given the stealthiness of this approach, which of the following scenarios best describes the scanning technique the attacker might be using?
正確答案: D
說明:(僅 Fast2test 成員可見)
In Miami, Florida, cybersecurity analyst Laura Bennett is responding to a series of unauthorized access attempts targeting Sunshine Credit Union's online banking platform. She observes unusual network activity that suggests attackers may be intercepting session IDs transmitted over unsecured connections to hijack active user sessions. To prevent further compromise, Laura works with the network team to apply a control that secures session-related communications throughout the entire portal, ensuring sensitive tokens are no longer exposed to interception during user interactions. What countermeasure should Laura implement to prevent session hijacking in this scenario?
正確答案: D
說明:(僅 Fast2test 成員可見)
A red team operator is conducting reconnaissance on a financial organization's infrastructure.
While probing UDP port 123, they send NTP queries and receive a list of internal IP addresses and connected hostnames. The organization is unaware that sensitive network details are exposed externally. What is the most likely reason for this information disclosure?
While probing UDP port 123, they send NTP queries and receive a list of internal IP addresses and connected hostnames. The organization is unaware that sensitive network details are exposed externally. What is the most likely reason for this information disclosure?
正確答案: B
說明:(僅 Fast2test 成員可見)
In Seattle, Washington, ethical hacker Mia Chen is hired by Pacific Trust Bank to test the security of their corporate network, which stores sensitive customer financial data. During her penetration test, Mia conducts a thorough reconnaissance, targeting a server that appears to host a critical database of transaction records. As she interacts with the server, she notices it responds promptly to her queries but occasionally returns error messages that seem inconsistent with a production system's behavior, such as unexpected protocol responses. Suspicious that this server might be a decoy designed to monitor her actions, Mia applies a technique to detect inconsistencies that may reveal the system as a honeypot. Which technique is Mia most likely using to determine if the server at Pacific Trust Bank is a honeypot?
正確答案: B
說明:(僅 Fast2test 成員可見)
During a physical penetration test at Sterling Electronics in Cleveland, ethical hacker Priya waits near the employee entrance during a shift change. When a group of staff enters the building using their access cards, Priya closely follows behind without swiping her own badge. None of the employees confront her, assuming she belongs there. Once inside, Priya proceeds to the break area where she documents the success of the exercise. Which social engineering technique is Priya demonstrating?
正確答案: A
說明:(僅 Fast2test 成員可見)
During a security assessment in San Francisco, an ethical hacker is tasked with evaluating a network's resilience against stealthy reconnaissance attempts. The hacker needs to employ a scanning technique that leverages TCP flags to evade detection by intrusion detection systems, relying on the target's response behavior to infer port states without completing a full connection.
Which approach best aligns with this strategy, ensuring minimal visibility during the assessment?
Which approach best aligns with this strategy, ensuring minimal visibility during the assessment?
正確答案: A
說明:(僅 Fast2test 成員可見)
During a network analysis at a mid-sized enterprise, a security engineer detects irregular DHCP behavior. Multiple endpoints are being assigned incorrect gateway and DNS settings, causing loss of connectivity and redirection to unauthorized servers. Packet captures show that clients are receiving IP address offers from more than one DHCP source. Upon further investigation, the logs confirm that the access switch is forwarding DHCP responses from all connected ports without filtering. This indicates that an unauthorized (rogue) DHCP server has been introduced into the network, impersonating the legitimate server and responding to client DHCPDISCOVER messages. To prevent this type of attack from occurring in the future, what security feature should the administrator enable?
正確答案: D
說明:(僅 Fast2test 成員可見)
During a penetration test at Triangle FinTech in Raleigh, North Carolina, ethical hacker Ethan attempts to bypass the company's perimeter firewall. Instead of sending obvious malicious payloads, he encapsulates his traffic inside standard web requests on port 80, blending in with normal browsing activity. This method allows his packets to slip past perimeter defenses that are not performing deep application inspection. Which firewall evasion technique is Ethan most likely using?
正確答案: B
During a red team assessment of a multinational financial firm, you're tasked with identifying key personnel across various departments and correlating their digital footprints to evaluate exposure risk. Your objective includes mapping user aliases across platforms, identifying geotagged media, and pinpointing potential insider threats based on social posting behavior. The team has shortlisted multiple tools for the task.
Considering the technical capabilities and limitations described in the approved reconnaissance toolkit, which tool provides cross platform username correlation by scanning hundreds of social networking sites, but does not natively support geolocation tracking or visualizing identity relationships?
Considering the technical capabilities and limitations described in the approved reconnaissance toolkit, which tool provides cross platform username correlation by scanning hundreds of social networking sites, but does not natively support geolocation tracking or visualizing identity relationships?
正確答案: B
說明:(僅 Fast2test 成員可見)
In Portland, Oregon, ethical hacker Olivia Harper is hired by Cascade Biotech to test the security of their research network. During her penetration test, she simulates an attack by sending malicious packets to a server hosting sensitive genetic data. To evade detection, she needs to understand the monitoring system deployed near the network's firewall, which analyzes incoming and outgoing traffic for suspicious patterns across the entire subnet. Olivia's goal is to bypass this system to highlight vulnerabilities for the security team. Which security system is Olivia attempting to bypass during her penetration test of Cascade Biotech's network?
正確答案: A
說明:(僅 Fast2test 成員可見)
At Redwood Financial Group in Boston, Massachusetts, the security leadership team is formalizing a continual security strategy composed of four coordinated activities. During implementation planning, one team is assigned responsibility for reviewing operational data across the enterprise environment to recognize irregular patterns that may indicate malicious activity. Within this model, which activity is responsible for this responsibility?
正確答案: A
說明:(僅 Fast2test 成員可見)
A security analyst uses Zenmap to perform an ICMP timestamp ping scan to acquire information related to the current time from the target host machine. Which of the following Zenmap options must the analyst use to perform the ICMP timestamp ping scan?
正確答案: C