[2026] Pass Key features of 112-52 Course with Updated 166 Questions [Q98-Q123]

Share

[2026] Pass Key features of 112-52 Course with Updated 166 Questions

112-52 Sample Practice Exam Questions 2026 Updated Verified

NEW QUESTION # 98
What primarily distinguishes a grey hat hacker from a black hat hacker?

  • A. The legality and intent of their actions
  • B. Their employment status
  • C. The tools they use
  • D. Their technical skill level

Answer: A


NEW QUESTION # 99
Which stage of the Cyber Kill Chain involves delivering the weaponized payload to the target?

  • A. Weaponization
  • B. Delivery
  • C. Reconnaissance
  • D. Installation

Answer: B


NEW QUESTION # 100
Which of the following is an example of a social engineering technique?

  • A. Malware injection
  • B. Pretexting
  • C. SQL injection
  • D. Code obfuscation

Answer: B


NEW QUESTION # 101
Which of the following best defines a 'threat actor'?

  • A. An entity that has the potential to cause harm by exploiting a vulnerability
  • B. A software that poses a threat to information security
  • C. The method by which a threat is delivered
  • D. A tool used to assess the level of threat on a network

Answer: A


NEW QUESTION # 102
What is the primary goal of session hijacking attacks?

  • A. To steal credentials through phishing
  • B. To perform vulnerability scans on the network
  • C. To disrupt communication between network devices
  • D. To take control of an active session between a user and a server

Answer: D


NEW QUESTION # 103
Which attack involves overwhelming a web server with traffic, making it inaccessible to legitimate users?

  • A. Cross-Site Scripting (XSS)
  • B. SQL Injection
  • C. Cross-Site Request Forgery (CSRF)
  • D. Denial of Service (DoS)

Answer: D


NEW QUESTION # 104
Which of the following is an example of a tool used in penetration testing for web applications?

  • A. John the Ripper
  • B. Nmap
  • C. Cain & Abel
  • D. Burp Suite

Answer: D


NEW QUESTION # 105
Which type of hacker works ethically to improve system security?

  • A. Green Hat
  • B. White Hat
  • C. Black Hat
  • D. Blue Hat

Answer: B


NEW QUESTION # 106
In which phase of penetration testing is information gathered to identify potential targets and their vulnerabilities?

  • A. Planning
  • B. Reporting
  • C. Discovery
  • D. Attack

Answer: C


NEW QUESTION # 107
Which of the following is considered a physical threat?

  • A. Tailgating
  • B. Phishing
  • C. SQL injection
  • D. Cross-site scripting

Answer: A


NEW QUESTION # 108
In which phase of the Cyber Kill Chain does a hacker deliver a payload to a target system?

  • A. Weaponization
  • B. Delivery
  • C. Reconnaissance
  • D. Exploitation

Answer: B


NEW QUESTION # 109
Which attack involves unauthorized access to or theft of information from a Bluetooth device?

  • A. Bluejacking
  • B. Man-in-the-Middle
  • C. War driving
  • D. Bluesnarfing

Answer: D


NEW QUESTION # 110
Which of the following is a social engineering technique?

  • A. Phishing
  • B. Traffic analysis
  • C. port scanning
  • D. Firewalking

Answer: A


NEW QUESTION # 111
What is the primary focus of Operational Technology (OT) systems?

  • A. Monitoring and controlling physical devices
  • B. Enhancing network security
  • C. Data analytics and processing
  • D. User experience and interface design

Answer: A


NEW QUESTION # 112
Which of the following is a common password cracking technique?

  • A. Brute force attack
  • B. Firewall bypassing
  • C. Phishing
  • D. Packet sniffing

Answer: A


NEW QUESTION # 113
Which wireless-specific attack involves capturing and analyzing Wi-Fi traffic on a network?

  • A. Phishing
  • B. VPN Tunneling
  • C. Wireless sniffing
  • D. Cross-Site Scripting

Answer: C


NEW QUESTION # 114
Which standard provides a framework for managing sensitive company information?

  • A. ISO 14001
  • B. ISO 9001
  • C. ISO 31000
  • D. ISO 27001

Answer: D


NEW QUESTION # 115
Which type of password cracking technique uses pre-computed hash tables?

  • A. Brute force attack
  • B. Dictionary attack
  • C. Rainbow table attack
  • D. Hybrid attack

Answer: C


NEW QUESTION # 116
Which practice BEST protects a mobile device against attacks?

  • A. Regularly updating the device operating system
  • B. Installing apps from unverified sources
  • C. Using open public Wi-Fi without VPN
  • D. Regularly updating the device operating system

Answer: A


NEW QUESTION # 117
What is the primary purpose of Mobile Device Management (MDM)?

  • A. Centralizing mobile device administration
  • B. Enabling faster data transfer
  • C. Increasing storage capacity
  • D. Enhancing device performance

Answer: A


NEW QUESTION # 118
Which regulation specifically addresses the protection of personal data within the European Union?

  • A. FISMA
  • B. HIPAA
  • C. GDPR
  • D. Sarbanes-Oxley Act

Answer: C


NEW QUESTION # 119
Which type of attack specifically targets the safety mechanisms of industrial control systems to cause physical damage?

  • A. Ransomware attack
  • B. Stuxnet-like attack
  • C. Logic bomb
  • D. Trojan horse

Answer: B


NEW QUESTION # 120
Which principle ensures that only authorized individuals can access information?

  • A. Accountability
  • B. Integrity
  • C. Availability
  • D. Confidentiality

Answer: D


NEW QUESTION # 121
Which of the following is typically identified during a vulnerability assessment?

  • A. Outdated software versions
  • B. Security awareness training gaps
  • C. Employee susceptibility to phishing
  • D. Encryption standards in use

Answer: A


NEW QUESTION # 122
Which is the MOST effective countermeasure against social engineering attacks?

  • A. Network traffic monitoring
  • B. Strong encryption algorithms
  • C. Port hardening
  • D. Employee security awareness training

Answer: D


NEW QUESTION # 123
......

The New 112-52 2026 Updated Verified Study Guides & Best Courses: https://www.pass4leader.com/EC-COUNCIL/112-52-exam.html

Exam Study Guide Free Practice Test LAST UPDATED : https://drive.google.com/open?id=1lMCSO6LT2gkBqV_UqQ9xjMhvStNiL4yi