NEW
Font size
WorksheetsKajar
Total questions: 50
Worksheet time: 25mins
Which of the following is considered a passive reconnaissance action?
Conducting a man-in-the-middle attack
Searching through the local paper
Using the nmap -sT command
Setting up a rogue hot spot
Calling Human Resources
Why is it important to scan your target network slowly?
To avoid alerting the IDS
To evade the firewall
Services may not have started, so scanning slowly ensures that you capture services that started late
It is not necessary to scan the network slowly
You are the senior manager in the IT department for your company. What is the most cost effective way to prevent social engineering attacks?
Ensure that all patches are up-to-date
Implement user awareness training
Monitor and control all email activity
Install HIDS
In which phase within the ethical hacking framework do you alter or delete log information?
Scanning and enumeration
Gaining access
Reconnaissance
Covering tracks
A hacker is conducting the following on the target workstation: nmap --sT 192.33.10.5. The attacker is in which phase?
Covering tracks
Gaining access
Enumeration
Scanning and enumeration
What does a SYN scan accomplish?
It establishes only a "half open" connection
It detects all closed ports on a target system
It opens an ACK connection with the target
It establishes a full TCP connection
In which phase is an attacker who is currently conducting a successful man-in-the-middle attack?
Reconnaissance
Covering Tracks
Gaining Access
Maintaining Access
What is the default TTL values for Microsoft Windows 7 OS?
256
128
64
255
As a penetration tester, only you and a few key selected individuals from the company will know of the targeted network that will be tested. You also have zero knowledge of your target other than the name and location of the company. What type of assessment is this called?
Gray box testing
White box testing
Black box testing
Blue box testing
As an attacker, you found your target. You spend the next two weeks observing and watching personnel move in and move out of the facility. You also observe how the front desk handles large packages that are delivered as well as people who do not have access badges. You finally come up with a solid schedule of security patrols that you see being conducted. What is it that you are doing?
Maintaining access
Reconnaissance
Gaining access
Casing the target
Which scanning tool is more likely going to yield accurate results for the hacker?
Ping
NsLookup
Nmap
Ncat
Which password is more secure?
Keepyourpasswordsecuretoyourself
I9Apple
pass123!!
P!@$$\w0rD
You are sitting inside of your office and you notice a strange person in the parking lot with what appears to be a tall antenna connected to a laptop. What is the stranger most likely doing?
Bluesnarfing
Wardriving
Warflying
Brute-forcing their personal electronic device
Which of following actions is the last step in scanning a target?
Discover open ports
Scan for vulnerabilities
Identify live systems
Identify the OS and servers
Of the following methods, which one acts as a middleman between an external network and the private network by initiating and establishing the connection?
Router
Switch
Proxy server
Firewall
What default port does SSH utilize?
Port 25
Port 443
Port 22
Port 21
As a pentester, you are hired to conduct an assessment on a group of systems for your client. You are provided with a list of critical assets, a list of domain controllers, and a list of virtual share drives. Nothing else was provided. What type of test are you conducting?
Gray box testing
White hat testing
Gray hat testing
White box testing
What is the role of an individual who interrogates a system with permission?
Red hat
White hat
Gray hat
Black hat
What port is used by DNS?
25
21
53
80
Which operating system build provides a suite of tools for network defense purposes?
Kali linux
Security Onion
FreeBSD
Windows Server
Which operating system build provides a suite of tools for network offensive (attack your target) purposes?
Security Onion
Kali linux
Windows Server
FreeBSD
A network of zombie computers used to execute a DDoS on a target system is called?
Botnet
Malware
Social Engineering
Whaling
Which of the following is used for recording key strokes at a terminal or keyboard using malicious software?
Recordware
Malware
Trojan
Keylogger
Software that creates pop-up advertisement messages while visiting websites is known as what?
Adware
Malware
Pop-up blocker
Freeware
The ability for information or services that must be accessible at a moment's notice is called what?
CIA
Redundancy
Survivability
Availability
A device that facilitates connections and acts as a middleman between a trusted zone and an untrusted zone is referred to as what?
Man-in-the-middle attack
Proxy server
Firewall
Gateway
As a black hat, you are conducting a reconnaissance operation on a potential target. You gather intelligence by using publicly available information, conducting stakeouts of the facility, and observing workers as they enter and leave the premises from across the street. What phase of the hacking methodologies are you operating within?
Passive reconnaissance
Fingerprinting
Active surveillance
Footprinting
As a black hat, you forge an identification badge and dress in clothes associated with a maintenance worker. You attempt to follow other maintenance personnel as they enter the power grid facility. What are you attempting to do?
Tailgating
Social engineering
Piggybacking
Reconnaissance
Chris decides to download some music from a website while at work. When he opens the music files, a pop-up notification informs Chris that he must send $600 US dollars to a PayPal account using the email address Shoju@scorpion.ru if he wants access to his system again. What do you think Chris may have installed?
Cryptoware
Adware
Ransomware
Trojan
Which term best describes the absence or weakness of a safeguard related to an asset?
Vulnerability
Exploit
Risk
Threat
As a black hat, you use ToneLoc to dial random numbers in order to connect to a modem that is providing service to a server. What type of attack are you conducting?
Wardriving
Scanning
Wardialing
DoS
As a white hat, your customer asks what type of assessments you can conduct. What are they?
Risk, vulnerability, and exploits
Risk, mitigation, and vulnerability
Malware, risk, and exploit
Risk, threat, and vulnerability
When a black hat is querying for a number of services or login information on a target system, what are they trying to accomplish?
Footprinting
Scanning
Enumeration
Fingerprinting
Which of the following allows the adversary to obtain passwords online in a passive manner?
Account creation
Password cracking
Man in the middle Attack
Sniffing
What is accomplished by a combination of ping sweeping and enumerating a target?
Fingerprinting
Reconnaissance
Identification
Footprinting
Which switch in Nmap allows for a full TCP connect scan?
-sS
-sU
-fC
-sT
As a black hat, you call into the city manager's office claiming to be a part of the help desk team. You ask the clerk for her username and password to install the latest Microsoft Office suite. What type of attack are you conducting?
Masquerading
Tailgating
Piggybacking
Impersonating
Which of the following applications is used to inspect packets?
NMap
Wireshark
Cain & Able
Aircrack
How would an administrator set a password for a user in Linux?
chmod pass user pass123
passwd user pass123
password user pass123
pass user pass123
Which is the second phase in the ethical hacking methodology?
Reconnaissance
Scanning and Enumeration
Covering tracks
Maintaining Access
Your company has been targeted by a series of phishing emails. In order to deter the attack, you quickly tell your users to verify senders. How do you go about implementing this?
Ensure the email was not encrypted
Reply back to their message and ask for their public key
Ensure the email is digitally signed
Call the sender and verify
A user side-loaded a popular app from an unauthorized third-party app store. When the user installed the app, it displayed a screen asking for payment and stating that if the payment was not received, the user would lose all access to data that was stored on their phone. What was installed on the user’s phone?
Spyware
Malware
Trojan
Ransomware
Which of the following is considered open-source information?
Newspaper
Information from man in the middle attack
Trade secret
Information from dumpster diving
Which of the following tools allows a user to monitor network activity?
Metasploit
Wireshark
Netcraft
Cain & Able
What is the default command port for FTP?
24
21
23
22
Which of the following has no flags set and does not respond if a port is open?
XMAS scan
ACK scan
NULL scan
Half-open connection
To establish a TCP connection, what must be sent first?
SYN
Hello Packet
ACK
Broadcast
Which is the last step of the CEH hacking methodology?
Corrupt data
Maintaining Access
Cover your tracks
Scrub the logs
Which of the following is a malware that does not need a host or human interaction to disrupt and corrupt data?
Keylogger
Trojan
Worm
Virus
What is the main purpose of installing a Trojan?
To cause DoS on a computer
To encrypt system
To delete files on a computer
To install backdoor
