Certified Ethical Hacker MCQ Flashcards
7 cards from real Certified Ethical Hacker practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Certified Ethical Hacker MCQ flashcards as text
During the reconnaissance phase, which technique gathers information without directly interacting with the target system?
Answer: Passive reconnaissance
Passive reconnaissance collects information from public sources without sending packets to the target.
Which tool is most commonly used to perform OS fingerprinting through TCP/IP stack analysis?
Answer: Nmap
Nmap analyzes TCP/IP stack responses to determine the target operating system.
What does the acronym DMZ stand for in network security?
Answer: Demilitarized Zone
A DMZ is a perimeter network that exposes external-facing services while protecting the internal LAN.
An attacker sends an ICMP echo request to a broadcast address with a spoofed source. What attack is this?
Answer: Smurf attack
A Smurf attack amplifies traffic by broadcasting ICMP requests with the victim's spoofed source address.
Which of the following is a valid countermeasure against ARP spoofing?
Answer: Dynamic ARP Inspection
Dynamic ARP Inspection validates ARP packets against a trusted DHCP binding table.
What is the primary purpose of a honeypot in an organization's security posture?
Answer: To lure and detect attackers
A honeypot is a decoy system designed to attract attackers and study their methods.
In cryptography, which property ensures that a sender cannot deny having sent a message?
Answer: Non-repudiation
Non-repudiation provides proof of origin, preventing the sender from denying authorship.