GAQM CPEH-001 Exam Questions
Certified Professional Ethical Hacker (CPEH) Exam (Page 4 )

Updated On: 21-Feb-2026

TCP SYN Flood attack uses the three-way handshake mechanism.
1. An attacker at system A sends a SYN packet to victim at system B
2. System B sends a SYN/ACK packet to victim A
3. As a normal three-way handshake mechanism system A should send an ACK packet to system B, however, system A does not send an ACK packet to system B. In this case client B is waiting for an ACK packet from client A
This status of client B is called _________________

  1. "half-closed"
  2. "half open"
  3. "full-open"
  4. "xmas-open"

Answer(s): B



Lori is a Certified Ethical Hacker as well as a Certified Hacking Forensics Investigator working as an IT security consultant. Lori has been hired on by Kiley Innovators, a large marketing firm that recently underwent a string of thefts and corporate espionage incidents. Lori is told that a rival marketing company came out with an exact duplicate product right before Kiley Innovators was about to release it. The executive team believes that an employee is leaking information to the rival company. Lori questions all employees, reviews server logs, and firewall logs; after which she finds nothing. Lori is then given permission to search through the corporate email system. She searches by email being sent to and sent from the rival marketing company. She finds one employee that appears to be sending very large email to this other marketing company, even though they should have no reason to be communicating with them. Lori tracks down the actual emails sent and upon opening them, only finds picture files attached to them. These files seem perfectly harmless, usually containing some kind of joke. Lori decides to use some special software to further examine the pictures and finds that each one had hidden text that was stored in each picture.
What technique was used by the Kiley Innovators employee to send information to the rival marketing company?

  1. The Kiley Innovators employee used cryptography to hide the information in the emails sent
  2. The method used by the employee to hide the information was logical watermarking
  3. The employee used steganography to hide information in the picture attachments
  4. By using the pictures to hide information, the employee utilized picture fuzzing

Answer(s): C



You run nmap port Scan on 10.0.0.5 and attempt to gain banner/server information from services running on ports 21, 110 and 123. Here is the output of your scan results:



Which of the following nmap command did you run?

  1. nmap -A -sV -p21, 110, 123 10.0.0.5
  2. nmap -F -sV -p21, 110, 123 10.0.0.5
  3. nmap -O -sV -p21, 110, 123 10.0.0.5
  4. nmap -T -sV -p21, 110, 123 10.0.0.5

Answer(s): C



How do you defend against Privilege Escalation?

  1. Use encryption to protect sensitive data
  2. Restrict the interactive logon privileges
  3. Run services as unprivileged accounts
  4. Allow security settings of IE to zero or Low
  5. Run users and applications on the least privileges

Answer(s): A,B,C,E



What does ICMP (type 11, code 0) denote?

  1. Source Quench
  2. Destination Unreachable
  3. Time Exceeded
  4. Unknown Type

Answer(s): C






Post your Comments and Discuss GAQM CPEH-001 exam dumps with other Community members:

Join the CPEH-001 Discussion