ECCouncil Certified Ethical Hacker Exam (CEHv13) - 312-50v13무료 덤프문제 풀어보기
A large multinational corporation is in the process of evaluating its security infrastructure to identify potential vulnerabilities. After a comprehensive analysis, they found multiple areas of concern, including time of check/time of use (TOC/TOU) errors, improper input handling, and poor patch management. Which of the following approaches will best help the organization mitigate the vulnerability associated with TOC/TOU errors?
정답: B
You are the lead cybersecurity analyst at a multinational corporation that uses a hybrid encryption system to secure inter-departmental communications. The system uses RSA encryption for key exchange and AES for data encryption, taking advantage of the strengths of both asymmetric and symmetric encryption. Each RSA key pair has a size of 'n' bits, with larger keys providing more security at the cost of slower performance. The time complexity of generating an RSA key pair is O(n^2), and AES encryption has a time complexity of O(n). An attacker has developed a quantum algorithm with time complexity O((log n)^2) to crack RSA encryption. Given 'n=4000' and variable
'AES key size', which scenario is likely to provide the best balance of security and performance?
'AES key size', which scenario is likely to provide the best balance of security and performance?
정답: C
As a certified ethical hacker, you have been tasked to exploit a security vulnerability on an Android device that uses the latest version of the OS. You found that there's an unpatched weakness in the handling of user permissions in the device, but the device has a fully updated anti-virus application installed. What would be the most effective approach to exploit this vulnerability without being detected by the anti-virus application?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
During a red team assessment at a banking client in Chicago, ethical hacker David gains access to the internal LAN. He sets up a test machine and injects crafted messages into the network.
Soon, all traffic between a finance workstation and the authentication server is silently routed through his system without changing switch configurations. He observes usernames and passwords passing through his interface, even though no proxy or VPN is in use. Which sniffing technique did David most likely use?
Soon, all traffic between a finance workstation and the authentication server is silently routed through his system without changing switch configurations. He observes usernames and passwords passing through his interface, even though no proxy or VPN is in use. Which sniffing technique did David most likely use?
정답: B
설명: (Fast2test 회원만 볼 수 있음)
Morris, an attacker, wanted to check whether the target AP is in a locked state. He attempted using different utilities to identify WPS-enabled APs in the target wireless network. Ultimately, he succeeded with one special command-line utility. Which of the following command-line utilities allowed Morris to discover the WPS-enabled APs?
정답: D
Which attack abuses business logic?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
You're an IT security analyst at a fast-growing fintech startup. Recently, you've noticed an uptick in network traffic anomalies. You decide to perform a more thorough network scan using the ICMP Echo Request method. During the scan, you notice that a certain set of IPs in your network are not returning any Echo Reply, but other network functionalities seem to be operating normally. How would you interpret this situation?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
Which defense MOST disrupts ransomware spread?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
A penetration tester is trying to attack a wireless network that uses WPA3 encryption. The tester wants to exploit the handshake to obtain the password but realizes WPA3 has stronger protections. What would be the most effective approach to compromise the network?
정답: D
설명: (Fast2test 회원만 볼 수 있음)
During a reconnaissance engagement at a law firm in Houston, Texas, you are tasked with analyzing the physical movement of employees through their publicly shared media. By examining geotagged images and mapping them to specific locations, you aim to evaluate whether staff are unintentionally disclosing sensitive information about office routines. Which tool from the reconnaissance toolkit would best support this task?
정답: C
설명: (Fast2test 회원만 볼 수 있음)
An enterprise collaboration platform used by a pharmaceutical distributor in Boston, Massachusetts relies on a centralized identity store to validate employee credentials. While reviewing the authentication workflow, a security tester notices that user-provided values are directly embedded into backend lookup expressions responsible for locating account records.
When specific logical operators and wildcard characters are introduced into the username field, the application's record-matching behavior changes. Instead of evaluating a single identity entry, the backend process begins matching a broader set of records than intended, altering the outcome of the authentication check.
The issue arises from improper handling of input within directory-based search logic.
From the following options, identify the injection technique illustrated in this scenario.
When specific logical operators and wildcard characters are introduced into the username field, the application's record-matching behavior changes. Instead of evaluating a single identity entry, the backend process begins matching a broader set of records than intended, altering the outcome of the authentication check.
The issue arises from improper handling of input within directory-based search logic.
From the following options, identify the injection technique illustrated in this scenario.
정답: A
설명: (Fast2test 회원만 볼 수 있음)
During a red team engagement at a healthcare organization in Chicago, ethical hacker Devon intercepts Kerberos authentication material from a compromised workstation. Instead of cracking the data, he reuses the stolen tickets to authenticate directly to other systems within the domain.
This allows him to access shared resources and servers without needing the users' plaintext credentials. No NTLM hashes or broadcast poisoning were involved. Which attack technique did Devon most likely perform?
This allows him to access shared resources and servers without needing the users' plaintext credentials. No NTLM hashes or broadcast poisoning were involved. Which attack technique did Devon most likely perform?
정답: C
설명: (Fast2test 회원만 볼 수 있음)