โ† All Certified Ethical Hacker Flashcard Decks

Certified Ethical Hacker MCQ Flashcards

7 cards from real Certified Ethical Hacker practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 7 Certified Ethical Hacker MCQ flashcards as text
  1. During the reconnaissance phase, which technique gathers information without directly interacting with the target system?

    Answer: Passive reconnaissance

    Passive reconnaissance collects information from public sources without sending packets to the target.

  2. Which tool is most commonly used to perform OS fingerprinting through TCP/IP stack analysis?

    Answer: Nmap

    Nmap analyzes TCP/IP stack responses to determine the target operating system.

  3. What does the acronym DMZ stand for in network security?

    Answer: Demilitarized Zone

    A DMZ is a perimeter network that exposes external-facing services while protecting the internal LAN.

  4. An attacker sends an ICMP echo request to a broadcast address with a spoofed source. What attack is this?

    Answer: Smurf attack

    A Smurf attack amplifies traffic by broadcasting ICMP requests with the victim's spoofed source address.

  5. Which of the following is a valid countermeasure against ARP spoofing?

    Answer: Dynamic ARP Inspection

    Dynamic ARP Inspection validates ARP packets against a trusted DHCP binding table.

  6. What is the primary purpose of a honeypot in an organization's security posture?

    Answer: To lure and detect attackers

    A honeypot is a decoy system designed to attract attackers and study their methods.

  7. In cryptography, which property ensures that a sender cannot deny having sent a message?

    Answer: Non-repudiation

    Non-repudiation provides proof of origin, preventing the sender from denying authorship.