Browse all practice questions for the Certified Ethical Hacker Certification (CEHv10) Practice Test. Search by topic, open any question and review its full explanation, then test yourself in the practice quiz.

Certified Ethical Hacker CEHv10 Practice Test 2026 – Complete Exam Prep course image
All questions

These questions are part of the practice quiz. Start practicing

  • Why is network zoning essential for organizations?
  • What is the primary function of malware in cyber attacks?
  • A man-in-the-middle attack primarily interferes with what aspect of communication?
  • Which of the following represents a type of high-interaction honeypot?
  • In a password guessing attack, how should passwords be organized prior to testing?
  • What is the primary goal of a replay attack?
  • Which of the following is NOT an application threat type?
  • What is one of the activities involved in the post-attack phase?
  • What is the result of exploiting a vulnerability that the vendor does not know about?
  • What is a characteristic of blind testing in black box testing?
  • Discretionary Access Control (DAC) allows users to:
  • What vulnerability does WEP primarily suffer from?
  • What does User Behavior Analytics (UBA) primarily aim to do?
  • Which of the following is NOT a part of the access control model?
  • When assessing the value of a hack, what factor is most significant to hackers?
  • Recovery controls are implemented after what event?
  • WPA is an acronym for which security protocol?
  • Which of the following best describes an Intrusion Detection System (IDS)?
  • Which protocol does WEP use to encrypt data?
  • In the post-attack phase, what is a key activity that is performed by the tester?
  • Which keylogger type operates at a lower level than standard application keyloggers?
  • What is reconnaissance in the context of hacking?
  • Which of the following is NOT a goal of EISA?
  • What is the main method used by the Slowloris attack?
  • What is meant by the term 'functionality' in the context of systems?
  • What does the term "improper input validation" refer to?
  • What does the Common Vulnerability Scoring System (CVSS) provide to organizations?
  • Which of the following is a result of proper access control implementation?
  • What is a key characteristic of advanced persistent threats?
  • What is cryptography most commonly used for?
  • What is the primary technique used in ARP poisoning?
  • What does an XSS attack aim to achieve?
  • What type of attack involves injecting scripts into web pages?
  • Which layer do circuit level gateway firewalls operate on?
  • What are the three main types of social engineering?
  • Which encryption standard is utilized by WPA2?
  • What is the primary goal of data recovery?
  • What is the purpose of a device driver keylogger?
  • How can viruses spread to other computers?
  • What is the goal of an availability attack?
  • What characterizes a distributed network attack?
  • What is the primary function of spyware?
  • What is the primary characteristic of a management zone?
  • What does an access control attack aim to bypass?
  • What are the two operation modes of WPA2?
  • What is the goal of DNS enumeration in ethical hacking?
  • Considering hack value, what might motivate a hacker besides financial gain?
  • What is an Offline Attack in the context of WPA/WPA2 encryption?
  • What is the primary purpose of establishing User Behavior Analytics in an organization?
  • In a command and control warfare context, what is a primary objective?
  • Which of the following best describes a risk in cybersecurity?
  • What is the aim of an authentication attack?
  • What is symmetric encryption characterized by?
  • In-band SQL injection is characterized by:
  • What is a vulnerability in the context of information security?
  • What is encompassed in 'Information Assurance'?
  • What does the term 'Host Threat' refer to?
  • What is NOT a purpose of penetration testing?
  • What information does IP Geolocation help to identify?
  • Identity Access Management (IAM) ensures which of the following?
  • What is the purpose of a honeypot in network security?
  • Which types of security policies are mentioned?
  • How many types of encryption are there?
  • What do bots used by hackers typically allow them to do?
  • What is the process of capturing data packets on a network called?
  • In the realm of hacking, the decision to pursue a target often relies on what criteria?
  • What is the primary aim of an injection attack?
  • The NVD includes databases related to what aspects of cybersecurity?
  • What kind of information might querying LDAP reveal?
  • What is one process necessary for achieving information assurance?
  • What characterizes a virus in terms of malicious software?
  • In a dictionary attack, what is the primary method used to crack passwords?
  • What technique involves disabling system features to prevent tracking of activities?
  • Which of the following roles primarily engages in criminal activities like website shutdowns?
  • Which of the following describes a scenario with high hack value?
  • What process is involved in confirming the identity of a user accessing a network?
  • What does passive footprinting involve?
  • What is an important action in managing smurf attacks?
  • What does integrity ensure in information security?
  • What best describes a web cache poisoning attack?
  • What is the main purpose of NTP enumeration?
  • What is meant by attack vectors in cybersecurity?
  • What is TCP/IP hijacking primarily aimed at?
  • What type of information can be collected during a security incident analysis?
  • SQL injection and cross-site scripting are examples of which type of threat?
  • Which type of attack involves gaining access through a compromised device to reach another network?
  • In a Shared Key Authentication process, what does the access point (AP) send to the client after receiving the authentication request?
  • What does a backup recovery test help to verify?
  • What does SSDP stand for in the context of network scanning?
  • Which term describes the set of policies and procedures governing data security?
  • What is the primary purpose of ethical hacking?
  • What might a hacker consider low hack value?
  • What does the user management component include?
  • What is one of the main weaknesses of NetBIOS that hackers exploit?
  • What does mobile-based social engineering primarily utilize?
  • Which type of traffic is actively injected into a LAN to conduct active sniffing?
  • What does access control help to secure against?
  • What is the primary goal of a wire sniffing attack?
  • Which type of control detects violations in security or attempts of intrusion?
  • What does grey box testing combine?
  • What defines ransomware?
  • Which of the following is NOT a common attack vector?
  • What technique does malware commonly utilize to achieve its objectives?
  • Which of the following is a function of enterprise directory services?
  • What is the main goal of physical security measures?
  • What protocol does WPA2-Enterprise use for authentication?
  • What kind of firewall filters packets based on rules applied to their source and destination?
  • What is the primary function of a hypervisor-based keylogger?
  • What is a common tactic used by ransomware?
  • What does the term 'hack value' refer to in the context of ethical hacking?
  • Which protocol is involved in the Shared Key Authentication process?
  • Which of the following best describes penetration testing?
  • What defines an integrity attack in a wireless network?
  • What do technical security policies define?
  • What is a key characteristic of suicide hackers?
  • What is a primary outcome when using a keylogger?
  • Which type of backup restores the entire data set to its last full form?
  • Which of these factors could lower a target's hack value?
  • What is a defining feature of symmetric encryption?
  • Which attack method can be employed to crack WPA encryption?
  • What is the primary function of antivirus software?
  • Which type of hacker relies entirely on publicly available information?
  • What is the purpose of a Whois query?
  • What skill do ethical hackers primarily use to enhance security?
  • Which type of vulnerability assessment specifically evaluates the security of software applications?
  • What type of attack does phishing typically involve?
  • Which element of information security ensures the validity and protection of data?
  • What type of encryption does WPA2-Personal use?
  • What approach do proprietary methodologies typically follow?
  • What does application threat refer to?
  • Which type of warfare involves infecting systems to achieve political goals?
  • What technique do stealth scans utilize to bypass firewalls?
  • What is a fundamental characteristic of an integrity attack?
  • What does EAP stand for in the context of WPA2-Enterprise?
  • What is a keylogger primarily designed to do?
  • What is the purpose of a fragmentation attack?
  • In terms of cybersecurity, what does phishing refer to?
  • Which of the following best defines an attack on sensitive information?
  • What does manipulating logs prevent?
  • What are Trojans typically disguised as?
  • Which risk level indicates a moderate concern that requires attention?
  • Which type of information gathering is considered passive?
  • Which aspect does vulnerability assessment concentrate on?
  • What is the first step in the wireless hacking methodology?
  • What process does the Identity Management Module in IAM focus on?
  • What does stateful multilayer inspection in firewalls combine?
  • Active vulnerability scanning involves which of the following?
  • Network zoning is primarily used for?
  • Which item is NOT typically covered under a security policy?
  • What does a TCP connect scan determine?
  • Which of the following is NOT an objective of risk management?
  • What is one common cause of security misconfiguration vulnerabilities?
  • What is the primary objective of the HIPAA enforcement rule?
  • What does ICMP echo scanning accomplish?
  • What is unique about thick whois data?
  • What is the main purpose of a DDoS attack?
  • What role does an IDS play in network security?
  • What characterizes unannounced testing in cybersecurity?
  • The Sarbanes Oxley Act mainly aims to protect which group?
  • Which of the following is a technique commonly used to leak data by insiders?
  • Which threat type involves an unauthorized individual gaining access to a network?
  • Which classification of attack involves manipulating the operating system?
  • What is a characteristic of DoS attacks?
  • Which of the following is NOT a type of software keylogger?
  • What defines session hijacking?
  • How is risk defined in the context of cybersecurity?
  • Which category of password cracking involves using offline tools to guess passwords?
  • What activates a Trojan's malicious code?
  • Which of the following is NOT a way of performing penetration testing?
  • What does the operation in access control terminology refer to?
  • What is the role of the Access Management Module in Identity Access Management?
  • What is the primary functionality of a kernel keylogger?
  • What is the first step in a password guessing attack?
  • What role do network diagrams play in cybersecurity?
  • Which of the following best describes the purpose of conducting penetration testing?
  • What is an example of a detective control?
  • Which of the following best characterizes proprietary methodologies?
  • Which phase follows the reconnaissance phase in a penetration test?
  • What is a characteristic of a SYN flood attack?
  • What is one of the objectives of footprinting in cybersecurity?
  • In the context of penetration testing, what is announced testing?
  • Which of the following is an example of a non-electronic attack?
  • What cryptographic method is utilized to create a digital signature?
  • What can be a result of TCP/IP hijacking?
  • What is NOT a typical function of data recovery?
  • What is the purpose of Public Key Infrastructure (PKI)?
  • What is a hash injection attack primarily targeting?
  • What mechanism does a Man-in-the-Browser attack primarily exploit?
  • What is the primary characteristic of passive vulnerability scanning?
  • What role does a Reference Monitor play in access control?
  • When exploiting vulnerabilities, it is important to pay particular attention to which aspect?
  • What is the primary cause of insider threats within an organization?
  • What does non-repudiation ensure in a communication process?
  • What is the primary purpose of DNS poisoning?
  • Which type of attack allows extraction of information by injecting true/false queries?
  • Open System Authentication (OSA) is utilized in the context of which type of network access?
  • Which term describes operators used in Google hacking?
  • What does Google hacking involve?
  • What is the best definition of active assessment in vulnerability evaluations?
  • Which of the following best defines eavesdropping?
  • What is ARP spoofing primarily used for?
  • Which of the following best differentiates between a security audit and penetration testing?
  • What motivates hacktivists to break into systems?
  • What type of attack is categorized under "Active online attacks" in password cracking?
  • What problem does the Meltdown vulnerability present?
  • Why are security policies important in organizations?
  • What is the consequence of a vast number of incomplete connections in a SYN flood attack?
  • In access control, what is the process of establishing user identity called?
  • Network scanning is used primarily for what purpose?
  • Which of the following is NOT considered a preventative control?
  • What technique is used by an attacker in MAC spoofing?
  • What kind of effort do hackers invest when they determine something has high 'hack value'?
  • Which of the following practices helps in maintaining industry standards and regulations during penetration testing?
  • What is the main purpose of a botnet?
  • What is the main purpose of ICMP scanning in network security?
  • What distinguishes white hats from black hats in ethical hacking?
  • What does malware analysis primarily involve?
  • How does ARP obtain MAC addresses of devices on a network?
  • What does a MAC address represent in a network?
  • What is a potential impact of an ICMP flood attack?
  • Which of the following is an example of session hijacking?
  • What is the purpose of a vulnerability assessment?
  • What potential risk does vulnerability pose to a system?
  • Which step is NOT part of a data backup strategy?
  • Which scanning technique focuses on IP networks specifically?
  • Which vulnerability allows attackers to access sensitive information from a program's memory space?
  • What is the primary goal of the pre-attack phase in penetration testing?
  • What does the last character of a NetBIOS name represent?
  • How do attackers exploit web application vulnerabilities?
  • What internal threat involves employees copying information onto external storage?
  • Which of the following is a method attackers may use to collect IVs for breaking WEP encryption?
  • What is the ultimate goal for hackers when they prioritize high hack value?
  • What motivates black hat hackers to exploit security vulnerabilities?
  • What does a demilitarized zone (DMZ) provide between external and internal networks?
  • Which rule of HIPAA ensures the confidentiality and integrity of health information?
  • What does the term "active probing assaults" refer to in ethical hacking?
  • What is evaluated during a risk assessment?
  • Which step follows the detection and analysis in the incident management process?
  • What does the process of privilege escalation exploit?
  • How does active sniffing work in a switched network environment?
  • What characterizes active online attacks?
  • What is the purpose of brute-force WPA key attacks?
  • What is an example of a technique to crack WPA/WPA2 encryption?
  • Which component is essential for administrative services related to user management?
  • Which aspect of WEP's security is primarily compromised?
  • What does a protocol attack primarily aim to do?
  • What is the primary goal of incident management process preparation?
  • What does data loss typically refer to?
  • What does the term "dumpster diving" refer to in the context of non-electronic attacks?
  • Which of the following is typically NOT a characteristic of a man-in-the-middle attack?
  • What is an XML External Entity attack?
  • Who are considered script kiddies?
  • Which type of threats are included in physical security categories?
  • Which of the following is NOT considered a common network threat?
  • Which warfare classification involves the use of technology to achieve military objectives?
  • Which of the following is NOT a type of penetration testing?
  • What information can NTP enumeration provide to hackers?
  • What is the result of successfully compromising a Wi-Fi network?
  • What does a ping sweep help a hacker to determine?
  • Which measure is recommended for safeguarding computer equipment when not in use?
  • What is one consequence of a confidentiality attack?
  • In networking, what is the Internet DMZ zone used for?
  • What characterizes a zero-day attack?
  • What is a necessary step to effectively break WEP encryption?
  • What does a DNS server hijacking attack accomplish?
  • What is data leakage?
  • How does a Packet Filtering Firewall determine whether to drop a packet?
  • During which phase do hackers attempt to hide their activities on the system?
  • Which of the following best describes Enterprise Information Security Architecture (EISA)?
  • What is the main characteristic of a blind SQL injection attack?
  • How are hackers characterized in the context of ethical hacking?
  • What is one of the primary objectives of system hacking?
  • What defines Advanced Persistent Threats (APTs)?
  • What are the two types of sniffing techniques?
  • What is a key feature of hardware keyloggers?
  • What does passive sniffing allow attackers to do in a network using hubs?
  • Which type of threat involves a malicious program disrupting a service?
  • Which of the following statements about symmetric encryption is true?
  • What does sensitive data exposure refer to?
  • What type of assessment looks at the overall security of a network from outside an organization?
  • What does the Digital Millennium Copyright Act (DMCA) primarily address?
  • Which type of honeypot is designed for production environments?
  • Which of the following is NOT one of the three important components of every system?
  • What is the primary purpose of a website defacement attack?
  • What type of information can attackers acquire through IP Geolocation?
  • Which of the following is a stage within the hacking process?
  • What is an exploit?
  • What type of attack is characterized by having some information about a password, such as its length and content?
  • What does Role Based Access Control (RBAC) provide?
  • What does SQL Injection primarily target?
  • Who are state-sponsored hackers typically employed by?
  • In static malware analysis, what is primarily examined?
  • In a source routing attack, what role does the attacker play?
  • What does DNS footprinting involve?
  • What characterizes a Smurf attack?
  • What are the three classifications of hardware keyloggers?
  • What describes vertical privilege escalation?
  • What is the aim of enumeration in network security?
  • What is a primary function of preventive controls in information security?
  • Which of the following reflects user data monitoring in UBA?
  • What type of privilege escalation involves acquiring privileges of the same level?
  • What is the purpose of website footprinting?
  • What are the stages in the five stages of hacking?
  • Which of the following describes administrative security policies?
  • What is the primary function of an application keylogger?
  • In sensitive data exposure cases, what is a major contributing factor?
  • What advantage does User Behavior Analytics (UBA) provide?
  • Which component is NOT part of a hardware keylogger?
  • Why do hackers prioritize targets with high hack value?
  • What is the primary function of a rootkit?
  • What is often the target of hacktivist attacks?
  • Which of the following is a common method of attack used in a rule-based attack?
  • Which network zone is dedicated to internal network management?
  • What type of attack is characterized by preventing legitimate users from accessing resources?
  • Which type of attack involves breaking into clouds to steal user information?
  • What defines active type footprinting in ethical hacking?
  • What is defined as an attempt to gain unauthorized access to a network?
  • Which organization is part of the Regional Internet Registries?
  • What is a key ethical guideline for conducting penetration tests?
  • In double blind testing, what do both the tester and target lack?
  • What is the correct term for the ability to track user actions within a system?
  • LDAP is an acronym for what protocol?
  • In how many layers does stateful multilayer inspection evaluate packets?
  • What kind of attacks involve the use of distributed processing to retrieve passwords from hashes?
  • Which of the following attacks primarily targets financial transactions using a trojan?
  • Which of the following is NOT classified as a host threat type?
  • Which attack involves flooding a target with a large number of ICMP ECHO request packets?
  • What is the aim of launching an attack in the wireless hacking methodology?
  • How do ethical hackers utilize the concept of hack value?
  • What is the objective of a Denial of Service (DoS) attack?
  • What does Thin Whois provide?
  • Which attack involves exploiting vulnerabilities in the UPnP protocol?
  • What type of hacker is typically motivated by political or religious beliefs?
  • In cybersecurity discussions, what does 'high hack value' commonly indicate?
  • What does list scanning primarily target?
  • What activity is NOT part of the target acquisition phase in penetration testing?
  • What is the main function of bots in a botnet?
  • What type of attack involves observing a user's actions to obtain sensitive information?
  • What is the main purpose of security testing methodology?
  • What is the effect of an ICMP port unreachable packet in a UDP scan?
  • What does static malware analysis involve?
  • What does FISMA primarily protect?
  • What is the strategy behind Advanced Persistent Threats?
  • What are the three categories of scanning techniques?
  • What defines an out-of-band SQL injection attack?
  • What is the main risk of insecure deserialization?
  • Which of the following best describes the behavior of spyware?
  • Which backup type only saves changes made since the last backup?
  • What is the purpose of compensating controls in cybersecurity?
  • Which type of firewall is implemented as a physical device?
  • What is the primary objective of a Security Incident and Event Management (SIEM) system?
  • What does doxing involve?
  • Which aspect of risk management involves prioritizing risks?
  • What does access control aim to restrict within a system or network?
  • What does the ISO/IEC 27001:2013 standard focus on?
  • What makes passive sniffing effective in certain network environments?
  • What is one method used to gain access to a target's operating system?
  • Which of the following items is NOT typically found on a device enumeration sheet?
  • What type of target might be deemed high risk, influencing a hacker's decision?
  • Which of the following best describes the purpose of network accounting?
  • What is the goal of an Information Security Management Program?
  • Which technique can be used to bypass IDS and firewall systems?
  • Which of the following helps improve the security of an application?
  • What is the main purpose of threat modeling in application security?
  • Which method is not typically used in cryptanalysis?
  • What is the main goal of a confidentiality attack?
  • Which of the following describes the behavior of script kiddies?
  • Which type of attack primarily focuses on exploiting programming mistakes that allow unauthorized actions?
  • What is the main goal of incident management in cybersecurity?
  • What is the primary goal of network footprinting in ethical hacking?
  • Which of the following characterizes a Worm in cybersecurity?
  • What is a key component of incident management?
  • Why is the concept of NAT important for network security?
  • During an HTTP Response Splitting attack, what does the attacker inject into the response headers?
  • What does computer-based social engineering primarily involve?
  • What can website mirroring help with, besides offline browsing?
  • What does Rules of Engagement (ROE) specify in penetration testing?
  • What technique involves observing a person's screen or keyboard to obtain sensitive information?
  • Which is a typical step in preventing exploitations during security testing?
  • What is the primary purpose of Network Address Translation (NAT)?
  • Which action is associated with computer-based social engineering?
  • In access control terminology, what does the term 'Subject' refer to?
  • What is a primary function of a packet sniffer?
  • Which of these best describes the function of CVSS?
  • How does UDP scanning determine whether a port is closed?
  • Which protocol allows an attacker to exploit a vulnerability due to unresolved name queries?
  • What does cryptanalysis aim to achieve in cybersecurity?
  • Which action involves deleting the logged activities of an attacker?
  • What is one of the features of Identity Access Management systems?
  • What information do software keyloggers primarily capture?
  • Where are MAC addresses and their virtual LAN parameters stored?
  • Which of the following best describes website mirroring?
  • What is passive banner grabbing primarily used for?
  • Which of the following is NOT one of the five major elements of information security?
  • What is one of the problems that can cause a security misconfiguration?
  • Which of the following is a common use for packet sniffing?
  • What is the purpose of a security policy?
  • What characterizes a grey box penetration test?
  • In the context of security operations, what is the role of the Blue Team?
  • What is the function of TKIP in WPA?
  • What does passive footprinting help avoid when collecting information?
  • What is usually included in the Rules of Engagement for penetration testing?
  • What are external data leakage threats primarily concerned with?
  • What can impact a hacker's perception of a target's hack value?
  • What is the primary benefit of using network diagrams in security assessments?
  • What is a worm in the context of cybersecurity?
  • What is the role of technical controls in network security?
  • What is phishing primarily used for in cyber attacks?
  • Which technique uses dictionary or cracking tools against WPA encryption?
  • What does Steganography primarily aim to achieve in information security?
  • What is the primary purpose of UDP scanning in network security?
  • What does cracking passwords typically involve?
  • What is the purpose of penetration testing in cybersecurity?
  • What does the Address Resolution Protocol (ARP) do?
  • What does privilege escalation allow an attacker to do?
Subscribe

Get the latest from Examzify

You can unsubscribe at any time. Read our privacy policy