Free 312-50v13 Exam Braindumps (page: 25)

Page 24 of 79

You are using a public Wi-Fi network inside a coffee shop. Before surfing the web, you use your VPN to prevent intruders from sniffing your traffic.

If you did not have a VPN, how would you identify whether someone is performing an ARP spoofing attack on your laptop?

  1. You should check your ARP table and see if there is one IP address with two different MAC addresses.
  2. You should scan the network using Nmap to check the MAC addresses of all the hosts and look for duplicates.
  3. You should use netstat to check for any suspicious connections with another IP address within the LAN.
  4. You cannot identify such an attack and must use a VPN to protect your traffic.

Answer(s): B



Lewis, a professional hacker, targeted the IoT cameras and devices used by a target venture-capital firm. He used an information-gathering tool to collect information about the IoT devices connected to a network, open ports and services, and the attack surface area. Using this tool, he also generated statistical reports on broad usage patterns and trends. This tool helped Lewis continually monitor every reachable server and device on the Internet, further allowing him to exploit these devices in the network.

Which of the following tools was employed by Lewis in the above scenario?

  1. NeuVector
  2. Lacework
  3. Censys
  4. Wapiti

Answer(s): C



Techno Security Inc. recently hired John as a penetration tester. He was tasked with identifying open ports in the target network and determining whether the ports are online and any firewall rule sets are encountered.

John decided to perform a TCP SYN ping scan on the target network.

Which of the following Nmap commands must John use to perform the TCP SYN ping scan?

  1. nmap -sn -PO < target IP address >
  2. nmap -sn -PS < target IP address >
  3. nmap -sn -PA < target IP address >
  4. nmap -sn -PP < target IP address >

Answer(s): B



Ricardo has discovered the username for an application in his target’s environment. As he has a limited amount of time, he decides to attempt to use a list of common passwords he found on the Internet. He compiles them into a list and then feeds that list as an argument into his password-cracking application.

What type of attack is Ricardo performing?

  1. Brute force
  2. Known plaintext
  3. Dictionary
  4. Password spraying

Answer(s): C






Post your Comments and Discuss EC-Council 312-50v13 exam with other Community members:

312-50v13 Exam Discussions & Posts