SEC504 Practice Questions
Prepare for SEC504 with more than an answer.
- Exam fee
- $999 USD
- Level
- Practitioner
- Valid for
- 4 years
Domains covered on the exam 6
- Incident Response and Cyber Investigations20%
- Recon, Scanning, and Enumeration Attacks15%
- Password and Access Attacks15%
- Public-Facing and Drive-By Attacks20%
- Evasion and Post-Exploitation Attacks20%
- Capture-the-Flag Event10%
- 1
Brutus is a password cracking tool that can be used to crack the following authentications:
• HTTP (Basic Authentication)
• HTTP (HTML Form/CGI)
• POP3 (Post Office Protocol v3)
• FTP (File Transfer Protocol)
• SMB (Server Message Block)
• TelnetWhich of the following attacks can be performed by Brutus for password cracking? Each correct answer represents a complete solution. Choose all that apply.

Show answer details
Correct answer: A, C, D
A, C, D
A, C, D
A, C, D
- 2
Victor wants to send an encrypted message to his friend. He is using certain steganography technique to accomplish this task. He takes a cover object and changes it accordingly to hide information. This secret information is recovered only when the algorithm compares the changed cover with the original cover. Which of the following Steganography methods is Victor using to accomplish the task?
Show answer details
Correct answer: A
A
- 3
John works as a professional Ethical Hacker. He has been assigned the project of testing the security o fwww.we-are-secure.com. He wants to perform a stealth scan to discover open ports and applications running on the We-are-secure server. For this purpose, he wants to initiate scanning with the IP address of any third party. Which of the following scanning techniques will John use to accomplish his task?
Show answer details
Correct answer: B
B
- 4
Which of the following techniques does an attacker use to sniff data frames on a local area network and modify the traffic?
Show answer details
Correct answer: D
D
- 5
An incident handler is analyzing network traffic with Wireshark and observes a large number of DNS queries for subdomains of
c2.attacker.com. The subdomains appear to be encoded strings. This activity is indicative of which post-exploitation technique?sequenceDiagram participant InfectedHost as Infected Host participant DNS_Resolver as Corporate DNS Resolver participant C2_Server as Attacker C2 Server InfectedHost->>DNS_Resolver: Query: [encoded_data].c2.attacker.com DNS_Resolver->>C2_Server: Forward Query C2_Server-->>DNS_Resolver: Respond with IP DNS_Resolver-->>InfectedHost: Forward ResponseShow answer details
Correct answer: B
DNS tunneling is a method of C2 communication and data exfiltration that encodes data within DNS queries and responses. Since DNS traffic (UDP/53) is often permitted through firewalls with minimal inspection, attackers use it as a covert channel. The observed pattern of numerous queries for uniquely encoded subdomains to a single parent domain is a classic indicator of this technique.
- 6
Alice wants to prove her identity to Bob. Bob requests her password as proof of identity, which Alice dutifully provides (possibly after some transformation like a hash function); meanwhile, Eve is eavesdropping the conversation and keeps the password. After the interchange is over, Eve connects to Bob posing as Alice; when asked for a proof of identity, Eve sends Alice's password read from the last session, which Bob accepts.
Which of the following attacks is being used by Eve?Show answer details
Correct answer: A
A
- 7
In which of the following steps of the incident handling processes does the Incident Handler make sure that all business processes and functions are back to normal and then also wants to monitor the system or processes to ensure that the system is not compromised again?
Show answer details
Correct answer: C
C
- 8
Victor is a novice Ethical Hacker. He is learning the hacking process, i.e., the steps taken by malicious hackers to perform hacking. Which of the following steps is NOT included in the hacking process?
Show answer details
Correct answer: B
B
- 9
You want to perform passive footprinting against we-are-secure Inc. Web server. Which of the following tools will you use?
Show answer details
Correct answer: D
D
- 10
Which of the following statements about reconnaissance is true?
Show answer details
Correct answer: A
A
