Browse all practice questions for the Certified Ethical Hacker Certification (CEHv10) Practice Test. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Hack the Planet in 2026: Ace Your CEHv10 Challenge with Confidence! course image
All questions

These questions are part of the practice quiz. Start practicing

  • What does privilege escalation allow an attacker to do?
  • What does data loss typically refer to?
  • Which type of information gathering is considered passive?
  • What is one method used to gain access to a target's operating system?
  • WPA is an acronym for which security protocol?
  • What does an access control attack aim to bypass?
  • Which type of firewall is implemented as a physical device?
  • Which step is NOT part of a data backup strategy?
  • What does computer-based social engineering primarily involve?
  • What is the primary function of a rootkit?
  • Which is a typical step in preventing exploitations during security testing?
  • What is a key feature of hardware keyloggers?
  • What information can NTP enumeration provide to hackers?
  • What does the term 'hack value' refer to in the context of ethical hacking?
  • A man-in-the-middle attack primarily interferes with what aspect of communication?
  • In a Shared Key Authentication process, what does the access point (AP) send to the client after receiving the authentication request?
  • What is the main purpose of ICMP scanning in network security?
  • Where are MAC addresses and their virtual LAN parameters stored?
  • In access control terminology, what does the term 'Subject' refer to?
  • In a dictionary attack, what is the primary method used to crack passwords?
  • In static malware analysis, what is primarily examined?
  • What does ICMP echo scanning accomplish?
  • What are Trojans typically disguised as?
  • What is usually included in the Rules of Engagement for penetration testing?
  • What is a vulnerability in the context of information security?
  • What does a DNS server hijacking attack accomplish?
  • What does User Behavior Analytics (UBA) primarily aim to do?
  • What is symmetric encryption characterized by?
  • What is the purpose of a honeypot in network security?
  • Which component is essential for administrative services related to user management?
  • What does DNS footprinting involve?
  • What is the primary characteristic of passive vulnerability scanning?
  • What is encompassed in 'Information Assurance'?
  • What type of information can be collected during a security incident analysis?
  • What is an example of a detective control?
  • What approach do proprietary methodologies typically follow?
  • What is the primary purpose of UDP scanning in network security?
  • Which of the following is NOT considered a common network threat?
  • What does a demilitarized zone (DMZ) provide between external and internal networks?
  • What is the primary purpose of DNS poisoning?
  • What characterizes a zero-day attack?
  • What is the purpose of a Whois query?
  • Which component is NOT part of a hardware keylogger?
  • What are the three categories of scanning techniques?
  • What is NOT a purpose of penetration testing?
  • What does Steganography primarily aim to achieve in information security?
  • What is a keylogger primarily designed to do?
  • Which type of attack involves breaking into clouds to steal user information?
  • What is one of the activities involved in the post-attack phase?
  • What does the last character of a NetBIOS name represent?
  • Which protocol does WEP use to encrypt data?
  • What does Role Based Access Control (RBAC) provide?
  • In access control, what is the process of establishing user identity called?
  • What is the purpose of website footprinting?
  • What technique involves observing a person's screen or keyboard to obtain sensitive information?
  • Which of the following is NOT one of the three important components of every system?
  • What is a primary function of a packet sniffer?
  • What is the first step in a password guessing attack?
  • What is the aim of enumeration in network security?
  • What kind of attacks involve the use of distributed processing to retrieve passwords from hashes?
  • What is the main purpose of a DDoS attack?
  • What is a common tactic used by ransomware?
  • What is the purpose of compensating controls in cybersecurity?
  • Which of the following best differentiates between a security audit and penetration testing?
  • What is the primary goal of incident management process preparation?
  • Which of the following is a technique commonly used to leak data by insiders?
  • Which of the following characterizes a Worm in cybersecurity?
  • Why is network zoning essential for organizations?
  • What are the three classifications of hardware keyloggers?
  • What is often the target of hacktivist attacks?
  • What makes passive sniffing effective in certain network environments?
  • What is the primary functionality of a kernel keylogger?
  • What does a ping sweep help a hacker to determine?
  • What is passive banner grabbing primarily used for?
  • What characterizes a virus in terms of malicious software?
  • What is one consequence of a confidentiality attack?
  • What is evaluated during a risk assessment?
  • What type of target might be deemed high risk, influencing a hacker's decision?
  • What is one common cause of security misconfiguration vulnerabilities?
  • What is the main purpose of threat modeling in application security?
  • In a command and control warfare context, what is a primary objective?
  • What is a potential impact of an ICMP flood attack?
  • What does the term 'Host Threat' refer to?
  • What is the primary function of a hypervisor-based keylogger?
  • What defines Advanced Persistent Threats (APTs)?
  • What does the term "dumpster diving" refer to in the context of non-electronic attacks?
  • What might a hacker consider low hack value?
  • In the context of penetration testing, what is announced testing?
  • How is risk defined in the context of cybersecurity?
  • What is the main risk of insecure deserialization?
  • Which type of honeypot is designed for production environments?
  • In the context of security operations, what is the role of the Blue Team?
  • What is the primary purpose of ethical hacking?
  • What does passive sniffing allow attackers to do in a network using hubs?
  • What is unique about thick whois data?
  • What does EAP stand for in the context of WPA2-Enterprise?
  • Which of the following items is NOT typically found on a device enumeration sheet?
  • What is the purpose of a security policy?
  • Who are state-sponsored hackers typically employed by?
  • Which protocol allows an attacker to exploit a vulnerability due to unresolved name queries?
  • What does access control aim to restrict within a system or network?
  • What is one of the problems that can cause a security misconfiguration?
  • What is one of the objectives of footprinting in cybersecurity?
  • What mechanism does a Man-in-the-Browser attack primarily exploit?
  • What is the goal of an Information Security Management Program?
  • Which term describes the set of policies and procedures governing data security?
  • What process is involved in confirming the identity of a user accessing a network?
  • Which of the following is an example of a non-electronic attack?
  • Which of the following practices helps in maintaining industry standards and regulations during penetration testing?
  • What are the three main types of social engineering?
  • Which measure is recommended for safeguarding computer equipment when not in use?
  • What is the first step in the wireless hacking methodology?
  • Which encryption standard is utilized by WPA2?
  • What does the operation in access control terminology refer to?
  • What does Rules of Engagement (ROE) specify in penetration testing?
  • What is the main method used by the Slowloris attack?
  • How does a Packet Filtering Firewall determine whether to drop a packet?
  • What is a key characteristic of advanced persistent threats?
  • What is one of the primary objectives of system hacking?
  • What is the objective of a Denial of Service (DoS) attack?
  • What is the primary purpose of Network Address Translation (NAT)?
  • Which action is associated with computer-based social engineering?
  • What are external data leakage threats primarily concerned with?
  • What does the term "improper input validation" refer to?
  • Which of the following is NOT a common attack vector?
  • What is the aim of an authentication attack?
  • Which of the following is NOT one of the five major elements of information security?
  • What is one process necessary for achieving information assurance?
  • What skill do ethical hackers primarily use to enhance security?
  • What is the main function of bots in a botnet?
  • Which element of information security ensures the validity and protection of data?
  • What type of attack is characterized by preventing legitimate users from accessing resources?
  • What is NOT a typical function of data recovery?
  • What defines an out-of-band SQL injection attack?
  • Which protocol is involved in the Shared Key Authentication process?
  • What are the two types of sniffing techniques?
  • What is the purpose of brute-force WPA key attacks?
  • What role does an IDS play in network security?
  • Which item is NOT typically covered under a security policy?
  • What does passive footprinting help avoid when collecting information?
  • What type of attack does phishing typically involve?
  • Which rule of HIPAA ensures the confidentiality and integrity of health information?
  • What is an example of a technique to crack WPA/WPA2 encryption?
  • Discretionary Access Control (DAC) allows users to:
  • What is one of the main weaknesses of NetBIOS that hackers exploit?
  • What does the Address Resolution Protocol (ARP) do?
  • Which of the following attacks primarily targets financial transactions using a trojan?
  • What is an exploit?
  • What can be a result of TCP/IP hijacking?
  • What does integrity ensure in information security?
  • Recovery controls are implemented after what event?
  • During an HTTP Response Splitting attack, what does the attacker inject into the response headers?
  • In cybersecurity discussions, what does 'high hack value' commonly indicate?
  • What does the user management component include?
  • What is the ultimate goal for hackers when they prioritize high hack value?
  • Which of the following is NOT classified as a host threat type?
  • Which of the following best describes the purpose of network accounting?
  • When assessing the value of a hack, what factor is most significant to hackers?
  • SQL injection and cross-site scripting are examples of which type of threat?
  • Which method is not typically used in cryptanalysis?
  • What is the role of technical controls in network security?
  • What type of attack involves observing a user's actions to obtain sensitive information?
  • What is a key characteristic of suicide hackers?
  • Which of the following describes the behavior of script kiddies?
  • Which of the following best describes the behavior of spyware?
  • Which term describes operators used in Google hacking?
  • What best describes a web cache poisoning attack?
  • Which of the following is a function of enterprise directory services?
  • What is a fundamental characteristic of an integrity attack?
  • What is the result of successfully compromising a Wi-Fi network?
  • Which of the following is NOT a goal of EISA?
  • Which aspect does vulnerability assessment concentrate on?
  • What is meant by attack vectors in cybersecurity?
  • What is an XML External Entity attack?
  • What does SQL Injection primarily target?
  • What is the primary goal of the pre-attack phase in penetration testing?
  • What characterizes active online attacks?
  • What is the primary goal of a wire sniffing attack?
  • Which of the following is NOT a type of penetration testing?
  • What type of assessment looks at the overall security of a network from outside an organization?
  • What information does IP Geolocation help to identify?
  • Which of the following is a result of proper access control implementation?
  • What is the aim of launching an attack in the wireless hacking methodology?
  • Which action involves deleting the logged activities of an attacker?
  • What does static malware analysis involve?
  • What does the ISO/IEC 27001:2013 standard focus on?
  • Which phase follows the reconnaissance phase in a penetration test?
  • What is the effect of an ICMP port unreachable packet in a UDP scan?
  • What kind of information might querying LDAP reveal?
  • How do ethical hackers utilize the concept of hack value?
  • Which of the following best describes the purpose of conducting penetration testing?
  • What is a key component of incident management?
  • Which network zone is dedicated to internal network management?
  • Which of the following is a stage within the hacking process?
  • How do attackers exploit web application vulnerabilities?
  • What characterizes a grey box penetration test?
  • What vulnerability does WEP primarily suffer from?
  • What is one of the features of Identity Access Management systems?
  • What describes vertical privilege escalation?
  • What is a hash injection attack primarily targeting?
  • What does non-repudiation ensure in a communication process?
  • What is the result of exploiting a vulnerability that the vendor does not know about?
  • Which type of attack involves gaining access through a compromised device to reach another network?
  • What is a key ethical guideline for conducting penetration tests?
  • Which type of traffic is actively injected into a LAN to conduct active sniffing?
  • What technique does malware commonly utilize to achieve its objectives?
  • Which of the following is a common method of attack used in a rule-based attack?
  • Which of the following reflects user data monitoring in UBA?
  • What is the main purpose of a botnet?
  • Which of the following is a common use for packet sniffing?
  • What does cracking passwords typically involve?
  • What is the primary benefit of using network diagrams in security assessments?
  • Which step follows the detection and analysis in the incident management process?
  • Which of the following is NOT an objective of risk management?
  • What is the role of the Access Management Module in Identity Access Management?
  • What does SSDP stand for in the context of network scanning?
  • Which attack method can be employed to crack WPA encryption?
  • In networking, what is the Internet DMZ zone used for?
  • What does manipulating logs prevent?
  • Which of these best describes the function of CVSS?
  • Which of the following is typically NOT a characteristic of a man-in-the-middle attack?
  • What is the primary purpose of establishing User Behavior Analytics in an organization?
  • Which threat type involves an unauthorized individual gaining access to a network?
  • What does grey box testing combine?
  • What is the main goal of incident management in cybersecurity?
  • What does the term "active probing assaults" refer to in ethical hacking?
  • What do bots used by hackers typically allow them to do?
  • What does an XSS attack aim to achieve?
  • What does Google hacking involve?
  • What is the primary goal of a replay attack?
  • Why is the concept of NAT important for network security?
  • What is the function of TKIP in WPA?
  • What is the correct term for the ability to track user actions within a system?
  • Who are considered script kiddies?
  • Which of the following best describes a risk in cybersecurity?
  • What does a protocol attack primarily aim to do?
  • Open System Authentication (OSA) is utilized in the context of which type of network access?
  • What does passive footprinting involve?
  • Which of the following best describes website mirroring?
  • What does a backup recovery test help to verify?
  • Which of the following roles primarily engages in criminal activities like website shutdowns?
  • Network zoning is primarily used for?
  • What advantage does User Behavior Analytics (UBA) provide?
  • LDAP is an acronym for what protocol?
  • When exploiting vulnerabilities, it is important to pay particular attention to which aspect?
  • What is the main purpose of security testing methodology?
  • Which of the following best describes an Intrusion Detection System (IDS)?
  • What does stateful multilayer inspection in firewalls combine?
  • What protocol does WPA2-Enterprise use for authentication?
  • What is the goal of DNS enumeration in ethical hacking?
  • What problem does the Meltdown vulnerability present?
  • What does a MAC address represent in a network?
  • What type of privilege escalation involves acquiring privileges of the same level?
  • What type of hacker is typically motivated by political or religious beliefs?
  • What role do network diagrams play in cybersecurity?
  • Why are security policies important in organizations?
  • What is the primary cause of insider threats within an organization?
  • What does the Digital Millennium Copyright Act (DMCA) primarily address?
  • What is meant by the term 'functionality' in the context of systems?
  • Which backup type only saves changes made since the last backup?
  • What is the primary aim of an injection attack?
  • Which of the following helps improve the security of an application?
  • What is the primary function of antivirus software?
  • What does mobile-based social engineering primarily utilize?
  • What is ARP spoofing primarily used for?
  • Which risk level indicates a moderate concern that requires attention?
  • What role does a Reference Monitor play in access control?
  • What is the purpose of a vulnerability assessment?
  • What is the primary technique used in ARP poisoning?
  • What is a necessary step to effectively break WEP encryption?
  • Which classification of attack involves manipulating the operating system?
  • What can website mirroring help with, besides offline browsing?
  • Which of the following best describes Enterprise Information Security Architecture (EISA)?
  • What kind of firewall filters packets based on rules applied to their source and destination?
  • Network scanning is used primarily for what purpose?
  • Which attack involves flooding a target with a large number of ICMP ECHO request packets?
  • Which of the following describes administrative security policies?
  • What is the purpose of a device driver keylogger?
  • What is the primary function of spyware?
  • The Sarbanes Oxley Act mainly aims to protect which group?
  • What is a defining feature of symmetric encryption?
  • What is a characteristic of blind testing in black box testing?
  • Which layer do circuit level gateway firewalls operate on?
  • What can impact a hacker's perception of a target's hack value?
  • Which of the following describes a scenario with high hack value?
  • Which of the following is NOT a part of the access control model?
  • What type of attack involves injecting scripts into web pages?
  • What distinguishes white hats from black hats in ethical hacking?
  • Which type of warfare involves infecting systems to achieve political goals?
  • What technique do stealth scans utilize to bypass firewalls?
  • What does access control help to secure against?
  • How does UDP scanning determine whether a port is closed?
  • What is an Offline Attack in the context of WPA/WPA2 encryption?
  • What is a primary outcome when using a keylogger?
  • What is reconnaissance in the context of hacking?
  • What is the main goal of a confidentiality attack?
  • The NVD includes databases related to what aspects of cybersecurity?
  • What defines session hijacking?
  • What technique is used by an attacker in MAC spoofing?
  • What type of attack is categorized under "Active online attacks" in password cracking?
  • Which type of hacker relies entirely on publicly available information?
  • What activates a Trojan's malicious code?
  • Which keylogger type operates at a lower level than standard application keyloggers?
  • In terms of cybersecurity, what does phishing refer to?
  • What are the stages in the five stages of hacking?
  • What is the primary function of an application keylogger?
  • What does doxing involve?
  • Which vulnerability allows attackers to access sensitive information from a program's memory space?
  • Which type of control detects violations in security or attempts of intrusion?
  • What does the Common Vulnerability Scoring System (CVSS) provide to organizations?
  • What is an important action in managing smurf attacks?
  • Which type of threats are included in physical security categories?
  • What does FISMA primarily protect?
  • In the realm of hacking, the decision to pursue a target often relies on what criteria?
  • What internal threat involves employees copying information onto external storage?
  • What motivates hacktivists to break into systems?
  • What is the primary goal of network footprinting in ethical hacking?
  • What potential risk does vulnerability pose to a system?
  • What is a characteristic of a SYN flood attack?
  • What are the two operation modes of WPA2?
  • Which type of vulnerability assessment specifically evaluates the security of software applications?
  • Identity Access Management (IAM) ensures which of the following?
  • Which of the following is NOT a way of performing penetration testing?
  • In a password guessing attack, how should passwords be organized prior to testing?
  • What is data leakage?
  • What does cryptanalysis aim to achieve in cybersecurity?
  • What do technical security policies define?
  • Which type of backup restores the entire data set to its last full form?
  • What is the consequence of a vast number of incomplete connections in a SYN flood attack?
  • What technique involves disabling system features to prevent tracking of activities?
  • How many types of encryption are there?
  • What is the main purpose of NTP enumeration?
  • What is the purpose of penetration testing in cybersecurity?
  • What is the primary function of malware in cyber attacks?
  • What type of attack is characterized by having some information about a password, such as its length and content?
  • What is the purpose of a fragmentation attack?
  • Which of the following is NOT a type of software keylogger?
  • Which of the following is an example of session hijacking?
  • In a source routing attack, what role does the attacker play?
  • In-band SQL injection is characterized by:
  • What information do software keyloggers primarily capture?
  • Which type of threat involves a malicious program disrupting a service?
  • What is the best definition of active assessment in vulnerability evaluations?
  • What characterizes unannounced testing in cybersecurity?
  • What is a worm in the context of cybersecurity?
  • Which type of attack allows extraction of information by injecting true/false queries?
  • Active vulnerability scanning involves which of the following?
  • How does active sniffing work in a switched network environment?
  • What type of encryption does WPA2-Personal use?
  • Why do hackers prioritize targets with high hack value?
  • What is phishing primarily used for in cyber attacks?
  • What characterizes a distributed network attack?
  • Which of the following best defines eavesdropping?
  • Which of the following is NOT considered a preventative control?
  • What is the purpose of Public Key Infrastructure (PKI)?
  • What is the main characteristic of a blind SQL injection attack?
  • Which warfare classification involves the use of technology to achieve military objectives?
  • Which of the following represents a type of high-interaction honeypot?
  • Which aspect of risk management involves prioritizing risks?
  • During which phase do hackers attempt to hide their activities on the system?
  • Which of the following is a method attackers may use to collect IVs for breaking WEP encryption?
  • Which category of password cracking involves using offline tools to guess passwords?
  • What is TCP/IP hijacking primarily aimed at?
  • Which aspect of WEP's security is primarily compromised?
  • How does ARP obtain MAC addresses of devices on a network?
  • What does Thin Whois provide?
  • What is the primary objective of a Security Incident and Event Management (SIEM) system?
  • Which of the following best characterizes proprietary methodologies?
  • Which types of security policies are mentioned?
  • Which type of attack primarily focuses on exploiting programming mistakes that allow unauthorized actions?
  • Which scanning technique focuses on IP networks specifically?
  • Considering hack value, what might motivate a hacker besides financial gain?
  • What defines active type footprinting in ethical hacking?
  • What cryptographic method is utilized to create a digital signature?
  • What is the primary goal of data recovery?
  • What type of information can attackers acquire through IP Geolocation?
  • What defines an integrity attack in a wireless network?
  • What is the strategy behind Advanced Persistent Threats?
  • What characterizes a Smurf attack?
  • What is the primary purpose of a website defacement attack?
  • What motivates black hat hackers to exploit security vulnerabilities?
  • Which technique uses dictionary or cracking tools against WPA encryption?
  • What is the process of capturing data packets on a network called?
  • What does malware analysis primarily involve?
  • What is cryptography most commonly used for?
  • Which organization is part of the Regional Internet Registries?
  • What kind of effort do hackers invest when they determine something has high 'hack value'?
  • Which technique can be used to bypass IDS and firewall systems?
  • What is the main goal of physical security measures?
  • What is the goal of an availability attack?
  • Which of the following best defines an attack on sensitive information?
  • In sensitive data exposure cases, what is a major contributing factor?
  • Which of the following statements about symmetric encryption is true?
  • What activity is NOT part of the target acquisition phase in penetration testing?
  • What process does the Identity Management Module in IAM focus on?
  • How are hackers characterized in the context of ethical hacking?
  • What does application threat refer to?
  • What is a primary function of preventive controls in information security?
  • What does a TCP connect scan determine?
  • What does the process of privilege escalation exploit?
  • Which of these factors could lower a target's hack value?
  • Which attack involves exploiting vulnerabilities in the UPnP protocol?
  • How can viruses spread to other computers?
  • What is defined as an attempt to gain unauthorized access to a network?
  • What is the primary characteristic of a management zone?
  • In how many layers does stateful multilayer inspection evaluate packets?
  • Which of the following is NOT an application threat type?
  • Which of the following best describes penetration testing?
  • What is the primary objective of the HIPAA enforcement rule?
  • In the post-attack phase, what is a key activity that is performed by the tester?
  • What does list scanning primarily target?
  • What is a characteristic of DoS attacks?
  • In double blind testing, what do both the tester and target lack?
  • What does sensitive data exposure refer to?
  • What defines ransomware?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy