Part 2 - CEH v12 Practice Questions: Reconnaissance & Footprinting Fundamentals episode artwork

EPISODE · Mar 14, 2025 · 10 MIN

Part 2 - CEH v12 Practice Questions: Reconnaissance & Footprinting Fundamentals

from Decoded: The Cybersecurity Podcast · host Edward Henriquez

Part 2: Reconnaissance & Footprinting (15 Questions) 1. What is the main goal of the reconnaissance phase in ethical hacking? • A) Exploiting vulnerabilities • B) Identifying security controls • C) Gathering target information • D) Delivering payloadsAnswer: C) Gathering target informationExplanation: Reconnaissance involves collecting details like domains, IPs, employee info, and network architecture. 2. Which is an example of passive reconnaissance? • A) Nmap port scan • B) Social media monitoring • C) Phishing attack • D) SQL injectionAnswer: B) Social media monitoringExplanation: Passive reconnaissance gathers public info without engaging the target, like WHOIS lookups or Google Dorking. 3. Which tool performs WHOIS lookups? • A) Maltego • B) nslookup • C) WHOIS • D) NiktoAnswer: C) WHOISExplanation: WHOIS reveals domain registration, owner details, and DNS info. 4. Which technique extracts sensitive data via search engines? • A) Google Dorking • B) DNS Spoofing • C) Phishing • D) ARP PoisoningAnswer: A) Google DorkingExplanation: Google Dorking uses search operators to locate exposed files and misconfigured servers. 5. Which command performs DNS zone transfers? • A) nslookup • B) whois • C) dig • D) pingAnswer: C) digExplanation: The dig command queries DNS records like A, MX, and TXT for zone information. 6. What reconnaissance technique intercepts wireless communications? • A) Phishing • B) Wardriving • C) Social engineering • D) FootprintingAnswer: B) WardrivingExplanation: Wardriving involves driving around to locate unsecured Wi-Fi networks. 7. Which tool gathers email addresses linked to a domain? • A) TheHarvester • B) Nikto • C) Nessus • D) HydraAnswer: A) TheHarvesterExplanation: TheHarvester collects emails, domains, and employee info via search engines and public sources. 8. What technique identifies a target’s network range and IP structure? • A) Banner grabbing • B) Port scanning • C) Footprinting • D) FingerprintingAnswer: C) FootprintingExplanation: Footprinting maps IP addresses, DNS info, and system configurations. 9. Which tool maps relationships between organizations, social media, and domains? • A) Maltego • B) Metasploit • C) Nikto • D) sqlmapAnswer: A) MaltegoExplanation: Maltego visualizes connections across networks and social platforms. 10. Which command identifies a domain’s mail server? • A) ping • B) traceroute • C) nslookup • D) netcatAnswer: C) nslookupExplanation: nslookup -type=MX [domain] reveals mail server info. 11. Which method uses impersonation or pretexting to gather information? • A) Passive reconnaissance • B) Active reconnaissance • C) Human reconnaissance • D) Hybrid reconnaissanceAnswer: C) Human reconnaissanceExplanation: Human reconnaissance exploits social engineering tactics to extract data. 12. Which tool maps web application attack surfaces? • A) Burp Suite • B) Aircrack-ng • C) Hashcat • D) EttercapAnswer: A) Burp SuiteExplanation: Burp Suite identifies web application vulnerabilities. 13. Which technique targets employees with customized attacks? • A) Whaling • B) Footprinting • C) Spear phishing • D) Dumpster divingAnswer: C) Spear phishingExplanation: Spear phishing personalizes attacks using gathered employee details. 14. Which reconnaissance type directly interacts with target systems? • A) Passive reconnaissance • B) Active reconnaissance • C) Hybrid reconnaissance • D) Dynamic reconnaissanceAnswer: B) Active reconnaissanceExplanation: Active reconnaissance involves direct engagement like port scanning. 15. Which technique retrieves sensitive data from discarded items? • A) Baiting • B) Dumpster diving • C) Tailgating • D) PharmingAnswer: B) Dumpster divingExplanation: Dumpster diving involves searching trash for useful data.

Episode metadata supplied by the publisher feed · Published Mar 14, 2025

Embed this episode

NOW PLAYING

Part 2 - CEH v12 Practice Questions: Reconnaissance & Footprinting Fundamentals

0:00 10:16

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of Decoded: The Cybersecurity Podcast?

This episode is 10 minutes long.

When was this Decoded: The Cybersecurity Podcast episode published?

This episode was published on March 14, 2025.

Can I download this Decoded: The Cybersecurity Podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!