
EC-CouncilCertified Ethical Hacker
Domain 4Objective 5
Evading IDS, Firewalls and Honeypots CEH Practice Questions (Page 4)
Part of the Network and Perimeter Hacking domain, which makes up ~9% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~9–14 in this domain), expect 2–3 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
9concepts
Questions 16–20
- 16
What is the primary purpose of a honeypot in network security?
Select an answer first - 17
A penetration tester is attempting to evade a signature-based NIDS that flags a specific exploit string. The tester needs to deliver the exploit payload without triggering the signature. Which technique is most likely to succeed?
Select an answer first - 18
An attacker splits a malicious payload across multiple small IP fragments so that the IDS cannot reassemble and inspect the full packet. Which IDS evasion technique is being used?
Select an answer first - 19
A security analyst is tuning an IDS that has been generating a high volume of false positives. The IDS is currently using signature-based detection. The analyst needs to reduce false positives while maintaining the ability to detect new, previously unseen attacks. Which approach best addresses this requirement?
Select an answer first - 20
A company has deployed a signature-based IDS and a stateful firewall. They are experiencing false positives from the IDS due to legitimate traffic that matches attack signatures. They want to reduce false positives without significantly increasing false negatives. Which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.