NO.1 You just purchased the latest DELL computer, which comes pre-installed with Windows 7,
McAfee antivirus software and a host of other applications. You want to connect Ethernet wire to
your cable modem and start using the computer immediately. Windows is dangerously insecure
when unpacked from the box, and there are a few things that you must do before you use it.
A. Configure "Windows Update" to automatic
B. New installation of Windows should be patched by installing the latest service packs and
C. Create a non-admin user with a complex password and logon to this account
D. Key applications such as Adobe Acrobat,Macromedia Flash,Java,Winzip etc.,must have the
latest security patches installed
E. Install a personal firewall and lock down unused ports from connecting to your computer
F. You can start using your computer as vendors such as DELL,HP and IBM would have already
installed the latest service packs.
G. Install the latest signatures for Antivirus software
Answer: A,B,C,E,G


NO.2 WEP is used on 802.11 networks, what was it designed for?
A. WEP is designed to provide a wireless local area network (WLAN) with a level of security and
privacy comparable to what it usually expected of a wired LAN.
B. WEP is designed to provide a wireless local area network (WLAN) with a level of availability
and privacy comparable to what is usually expected of a wired LAN.
C. WEP is designed to provide strong encryption to a wireless local area network (WLAN) with a
lever of integrity and privacy adequate for sensible but unclassified information.
D. WEOP is designed to provide a wireless local area network (WLAN) with a level of privacy
comparable to what it usually expected of a wired LAN.
Answer: A


NO.3 Bart is looking for a Windows NT/ 2000/XP command-line tool that can be used to assign,
or modify ACL’s (access control lists) to files or folders and also one that can be used within batch
Which of the following tools can be used for that purpose? (Choose the best answer)
A. CLACS.exe
B. CACLS.exe
C. PERM.exe
Answer: B

312-50v8合格率   312-50v8学習指導   

NO.4 Which of the following is an automated vulnerability assessment tool?
A. Nessus
B. Nmap
C. Jill32
D. Whack a Mole
E. Kismet
Answer: A

312-50v8費用   312-50v8資格試験   

NO.5 Harold is the senior security analyst for a small state agency in New York. He has no other
security professionals that work under him, so he has to do all the security-related tasks for the
agency. Coming from a computer hardware background, Harold does not have a lot of experience
with security methodologies and technologies, but he was the only one who applied for the
position. Harold is currently trying to run a Sniffer on the agency's network to get an idea of what
kind of traffic is being passed around, but the program he is using does not seem to be capturing
anything. He pours through the Sniffer's manual, but cannot find anything that directly relates to
his problem. Harold decides to ask the network administrator if he has any thoughts on the
problem. Harold is told that the Sniffer was not working because the agency's network is a
switched network, which cannot be sniffed by some programs without some tweaking. What
technique could Harold use to sniff his agency's switched network?
A. Launch smurf attack against the switch
B. Conduct MiTM against the switch
C. Flood the switch with ICMP packets
D. ARP spoof the default gateway
Answer: D

312-50v8独学書籍   312-50v8無料試験   

NO.6 You are the CIO for Avantes Finance International, a global finance company based in Geneva.
You are responsible for network functions and logical security throughout the entire corporation.
Your company has over 250 servers running Windows Server, 5000 workstations running
Windows Vista, and 200 mobile users working from laptops on Windows 7.
Last week, 10 of your company's laptops were stolen from salesmen while at a conference in
Amsterdam. These laptops contained proprietary company information. While doing damage
assessment on the possible public relations nightmare this may become, a news story leaks about
the stolen laptops and also that sensitive information from those computers was posted to a blog
What built-in Windows feature could you have implemented to protect the sensitive information on
these laptops?
A. You should have utilized the built-in feature of Distributed File System (DFS) to protect the
sensitive information on the laptops
B. If you would have implemented Pretty Good Privacy (PGP) which is built into Windows,the
sensitive information on the laptops would not have leaked out
C. You could have implemented Encrypted File System (EFS) to encrypt the sensitive files on the
D. You should have used 3DES which is built into Windows
Answer: C


NO.7 A security analyst in an insurance company is assigned to test a new web application that will
used by clients to help them choose and apply for an insurance plan. The analyst discovers that
the application is developed in ASP scripting language and it uses MSSQL as a database
backend. The analyst locates the application's search form and introduces the following code in
the search input fielD.
IMG SRC=vbscript:msgbox("Vulnerable");> originalAttribute="SRC"
When the analyst submits the form, the browser returns a pop-up window that says "Vulnerable".
Which web applications vulnerability did the analyst discover?
A. SQL injection
B. Command injection
C. Cross-site scripting
D. Cross-site request forgery
Answer: C


Pass4Testの EC-COUNCILの712-50過去問題を手に入れるなら、あなたは最も新しいEC-COUNCILの712-50過去問題を手に入れられます。Pass4Testの 学習教材の高い正確性は君がEC-COUNCILの712-50過去問題に合格するのを保証します。もしうちの学習教材を購入した後、商品は問題があれば、或いは試験に不合格になる場合は、私たちが全額返金することを保証いたします。


試験科目:「EC-Council Certified CISO (CCISO)」
問題と解答:全345問 712-50過去問題

>> 712-50過去問題

試験科目:「Certified Ethical Hacker v8」
問題と解答:全880問 312-50v8試験感想

>> 312-50v8試験感想




Related Links:
投稿日: 2016/2/12 17:06:26  |  カテゴリー: EC-COUNCIL  |  タグ: 712-50教育312-50v8EC-COUNCIL