
[2026] Pass Key features of 112-52 Course with Updated 166 Questions
112-52 Sample Practice Exam Questions 2026 Updated Verified
NEW QUESTION # 98
What primarily distinguishes a grey hat hacker from a black hat hacker?
- A. The legality and intent of their actions
- B. Their employment status
- C. The tools they use
- D. Their technical skill level
Answer: A
NEW QUESTION # 99
Which stage of the Cyber Kill Chain involves delivering the weaponized payload to the target?
- A. Weaponization
- B. Delivery
- C. Reconnaissance
- D. Installation
Answer: B
NEW QUESTION # 100
Which of the following is an example of a social engineering technique?
- A. Malware injection
- B. Pretexting
- C. SQL injection
- D. Code obfuscation
Answer: B
NEW QUESTION # 101
Which of the following best defines a 'threat actor'?
- A. An entity that has the potential to cause harm by exploiting a vulnerability
- B. A software that poses a threat to information security
- C. The method by which a threat is delivered
- D. A tool used to assess the level of threat on a network
Answer: A
NEW QUESTION # 102
What is the primary goal of session hijacking attacks?
- A. To steal credentials through phishing
- B. To perform vulnerability scans on the network
- C. To disrupt communication between network devices
- D. To take control of an active session between a user and a server
Answer: D
NEW QUESTION # 103
Which attack involves overwhelming a web server with traffic, making it inaccessible to legitimate users?
- A. Cross-Site Scripting (XSS)
- B. SQL Injection
- C. Cross-Site Request Forgery (CSRF)
- D. Denial of Service (DoS)
Answer: D
NEW QUESTION # 104
Which of the following is an example of a tool used in penetration testing for web applications?
- A. John the Ripper
- B. Nmap
- C. Cain & Abel
- D. Burp Suite
Answer: D
NEW QUESTION # 105
Which type of hacker works ethically to improve system security?
- A. Green Hat
- B. White Hat
- C. Black Hat
- D. Blue Hat
Answer: B
NEW QUESTION # 106
In which phase of penetration testing is information gathered to identify potential targets and their vulnerabilities?
- A. Planning
- B. Reporting
- C. Discovery
- D. Attack
Answer: C
NEW QUESTION # 107
Which of the following is considered a physical threat?
- A. Tailgating
- B. Phishing
- C. SQL injection
- D. Cross-site scripting
Answer: A
NEW QUESTION # 108
In which phase of the Cyber Kill Chain does a hacker deliver a payload to a target system?
- A. Weaponization
- B. Delivery
- C. Reconnaissance
- D. Exploitation
Answer: B
NEW QUESTION # 109
Which attack involves unauthorized access to or theft of information from a Bluetooth device?
- A. Bluejacking
- B. Man-in-the-Middle
- C. War driving
- D. Bluesnarfing
Answer: D
NEW QUESTION # 110
Which of the following is a social engineering technique?
- A. Phishing
- B. Traffic analysis
- C. port scanning
- D. Firewalking
Answer: A
NEW QUESTION # 111
What is the primary focus of Operational Technology (OT) systems?
- A. Monitoring and controlling physical devices
- B. Enhancing network security
- C. Data analytics and processing
- D. User experience and interface design
Answer: A
NEW QUESTION # 112
Which of the following is a common password cracking technique?
- A. Brute force attack
- B. Firewall bypassing
- C. Phishing
- D. Packet sniffing
Answer: A
NEW QUESTION # 113
Which wireless-specific attack involves capturing and analyzing Wi-Fi traffic on a network?
- A. Phishing
- B. VPN Tunneling
- C. Wireless sniffing
- D. Cross-Site Scripting
Answer: C
NEW QUESTION # 114
Which standard provides a framework for managing sensitive company information?
- A. ISO 14001
- B. ISO 9001
- C. ISO 31000
- D. ISO 27001
Answer: D
NEW QUESTION # 115
Which type of password cracking technique uses pre-computed hash tables?
- A. Brute force attack
- B. Dictionary attack
- C. Rainbow table attack
- D. Hybrid attack
Answer: C
NEW QUESTION # 116
Which practice BEST protects a mobile device against attacks?
- A. Regularly updating the device operating system
- B. Installing apps from unverified sources
- C. Using open public Wi-Fi without VPN
- D. Regularly updating the device operating system
Answer: A
NEW QUESTION # 117
What is the primary purpose of Mobile Device Management (MDM)?
- A. Centralizing mobile device administration
- B. Enabling faster data transfer
- C. Increasing storage capacity
- D. Enhancing device performance
Answer: A
NEW QUESTION # 118
Which regulation specifically addresses the protection of personal data within the European Union?
- A. FISMA
- B. HIPAA
- C. GDPR
- D. Sarbanes-Oxley Act
Answer: C
NEW QUESTION # 119
Which type of attack specifically targets the safety mechanisms of industrial control systems to cause physical damage?
- A. Ransomware attack
- B. Stuxnet-like attack
- C. Logic bomb
- D. Trojan horse
Answer: B
NEW QUESTION # 120
Which principle ensures that only authorized individuals can access information?
- A. Accountability
- B. Integrity
- C. Availability
- D. Confidentiality
Answer: D
NEW QUESTION # 121
Which of the following is typically identified during a vulnerability assessment?
- A. Outdated software versions
- B. Security awareness training gaps
- C. Employee susceptibility to phishing
- D. Encryption standards in use
Answer: A
NEW QUESTION # 122
Which is the MOST effective countermeasure against social engineering attacks?
- A. Network traffic monitoring
- B. Strong encryption algorithms
- C. Port hardening
- D. Employee security awareness training
Answer: D
NEW QUESTION # 123
......
The New 112-52 2026 Updated Verified Study Guides & Best Courses: https://www.pass4leader.com/EC-COUNCIL/112-52-exam.html
Exam Study Guide Free Practice Test LAST UPDATED : https://drive.google.com/open?id=1lMCSO6LT2gkBqV_UqQ9xjMhvStNiL4yi