最新的ECCouncil Certified Ethical Hacker Exam (CEH v13 AI) - 312-50v13免費考試真題
A security operations center at a financial institution in New York City conducts a vulnerability assessment across a server environment.
Before initiating the scans, the lead administrator selects predefined scanning profiles tailored to the platforms used in the environment. Servers running Windows are assessed using a scanner configuration designed for Windows systems and associated services, while Linux-based hosts are evaluated using a separate assessment strategy designed for that platform.
The scans proceed using these predefined platform-specific configurations without modifying the testing strategy based on discoveries made during execution.
Which vulnerability assessment solution is illustrated in this scenario?
Before initiating the scans, the lead administrator selects predefined scanning profiles tailored to the platforms used in the environment. Servers running Windows are assessed using a scanner configuration designed for Windows systems and associated services, while Linux-based hosts are evaluated using a separate assessment strategy designed for that platform.
The scans proceed using these predefined platform-specific configurations without modifying the testing strategy based on discoveries made during execution.
Which vulnerability assessment solution is illustrated in this scenario?
正確答案: A
說明:(僅 Fast2test 成員可見)
During a penetration test at a healthcare provider in Phoenix, ethical hacker Sofia crafts a stream of IP packets with manipulated offset fields and overlapping payload offsets so that the records server ' s protocol stack repeatedly attempts to reconstruct the original datagrams. The repeated reconstruction attempts consume CPU and memory, causing the system to crash intermittently and disrupt patient portal access, even though overall bandwidth remains normal. Packet analysis shows deliberately malformed offsets that trigger processing errors rather than a simple flood of traffic.
Which type of attack is Sofia most likely simulating?
Which type of attack is Sofia most likely simulating?
正確答案: A
說明:(僅 Fast2test 成員可見)
A cloud service provider in Singapore is refining its defensive monitoring strategy to identify large-scale denial-of-service attempts against hosted applications. The security engineering team wants a detection mechanism that continuously evaluates incoming traffic streams and statistically determines the exact moment when normal behavior shifts into anomalous activity.
Rather than relying solely on static baselines or historical comparisons, the team prefers an approach that detects abrupt deviations in real time by identifying structural breaks in traffic metrics as they occur.
Which DDoS detection technique best fits this requirement?
Rather than relying solely on static baselines or historical comparisons, the team prefers an approach that detects abrupt deviations in real time by identifying structural breaks in traffic metrics as they occur.
Which DDoS detection technique best fits this requirement?
正確答案: D
說明:(僅 Fast2test 成員可見)
During an authorized wireless security assessment, an ethical hacker captures traffic between client devices and a corporate access point to evaluate the strength of the implemented encryption mechanism. Packet analysis reveals that before protected data exchange begins, the client and access point complete a structured four-message key negotiation process. Subsequent traffic is encrypted using an AES-based counter mode protocol that integrates message authentication for integrity protection. Based on these observations, identify the wireless encryption standard deployed on the network.
正確答案: B
說明:(僅 Fast2test 成員可見)
Which protocol is insecure by default?
正確答案: C
說明:(僅 Fast2test 成員可見)
In Dallas, Texas, ethical hacker Ethan Brooks is hired by Lone Star Credit Union to assess the security of their online banking portal, which processes customer transactions. During his penetration test, Ethan probes the web server hosting the portal, experimenting with crafted URL requests. He notices that by altering the URL parameters in a specific way, the server returns data from areas of the system that should be restricted, revealing configuration files not intended for public access. Suspecting this behavior indicates a vulnerability, Ethan documents the issue to help the security team strengthen their defenses against potential unauthorized access.
Which technique is Ethan most likely using to uncover the vulnerability in Lone Star Credit Union's web server?
Which technique is Ethan most likely using to uncover the vulnerability in Lone Star Credit Union's web server?
正確答案: C
說明:(僅 Fast2test 成員可見)
At a popular online banking platform in Frankfurt, Germany, the security operations team began receiving reports from customers that they were occasionally being served a fake login page containing malicious JavaScript when accessing the legitimate banking URL. The origin web servers were verified to be returning the correct clean page, yet some users-particularly those behind corporate proxies-continued to receive the malicious version for a period of time.
Investigation revealed that a single specially crafted request sent earlier had caused an intermediate delivery layer to store and serve the attacker-controlled response for the legitimate URL.
What kind of web server attack is demonstrated in this scenario?
Investigation revealed that a single specially crafted request sent earlier had caused an intermediate delivery layer to store and serve the attacker-controlled response for the legitimate URL.
What kind of web server attack is demonstrated in this scenario?
正確答案: D
說明:(僅 Fast2test 成員可見)
During an external assessment of a healthcare insurance company in Houston, a penetration tester identifies a service running on TCP port 389. When queried, the service accepts anonymous binds and reveals directory data. By structuring his search filter, the tester is able to obtain usernames, departmental details, and organizational units. This information could potentially be used for targeted password attacks or privilege escalation.
Which classification best describes this enumeration activity?
Which classification best describes this enumeration activity?
正確答案: C
說明:(僅 Fast2test 成員可見)
A U.S.-based online securities trading firm in New York is reviewing its transaction authentication process.
The security team confirms that each transaction is processed by first generating a hash of the transaction data. The hash value is then signed using the sender's private key.
During verification, the recipient uses the corresponding public key to validate the signature before approving the transaction. The system documentation specifies that the same algorithm supports encryption, digital signatures, and key exchange mechanisms within the organization's secure communications infrastructure.
Which encryption algorithm is being used in this implementation?
The security team confirms that each transaction is processed by first generating a hash of the transaction data. The hash value is then signed using the sender's private key.
During verification, the recipient uses the corresponding public key to validate the signature before approving the transaction. The system documentation specifies that the same algorithm supports encryption, digital signatures, and key exchange mechanisms within the organization's secure communications infrastructure.
Which encryption algorithm is being used in this implementation?
正確答案: A
說明:(僅 Fast2test 成員可見)
What is the minimum number of network connections in a multihomed firewall?
正確答案: C
說明:(僅 Fast2test 成員可見)
As part of a controlled security engagement, NorthBridge Consulting evaluates several servers to determine how they might be leveraged during an adversary simulation.
The review reveals that services are reachable from external networks because the systems were installed using vendor-default settings and no administrative adjustments were made to restrict remote access after deployment.
What is the most accurate explanation for the existence of this weakness?
The review reveals that services are reachable from external networks because the systems were installed using vendor-default settings and no administrative adjustments were made to restrict remote access after deployment.
What is the most accurate explanation for the existence of this weakness?
正確答案: C
說明:(僅 Fast2test 成員可見)