Certified Ethical Hacker MCQ Flashcards
7 cards from real Certified Ethical Hacker practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 7 Certified Ethical Hacker MCQ flashcards as text
Which phase of the CEH hacking methodology comes immediately after gaining access?
Answer: Maintaining access
After gaining access, the attacker focuses on maintaining access to keep persistence.
What kind of malware disguises itself as legitimate software to trick users into installing it?
Answer: Trojan
A Trojan masquerades as benign software while carrying a hidden malicious payload.
Which attack injects malicious scripts into web pages viewed by other users?
Answer: Cross-Site Scripting (XSS)
XSS injects client-side scripts that execute in other users' browsers.
What is the purpose of a rainbow table in password attacks?
Answer: Precomputed hashes to reverse passwords quickly
A rainbow table is a precomputed lookup of hash values to crack passwords efficiently.
Which protocol does a deauthentication attack abuse to disconnect wireless clients?
Answer: 802.11 management frames
Deauthentication attacks send forged 802.11 management frames to force clients off the network.
What is the best defense against a buffer overflow attack at the development level?
Answer: Input validation and bounds checking
Validating input and enforcing bounds prevents writing data beyond allocated buffers.
Which term describes searching through an organization's discarded materials for sensitive information?
Answer: Dumpster diving
Dumpster diving recovers confidential data from physical trash and discarded media.