Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Ethical Hacker

Domain 4Objective 4

Session Hijacking CEH Practice Questions (Page 5)

Part of the Network and Perimeter Hacking domain, which makes up ~9% of our current practice bank. EC-Council does not publish an official question count, but from its 240-minute exam (~95–160 total, ~9–14 in this domain), expect 2–3 from this objective — we provide 46 practice questions to prepare you well beyond it. (estimate)

46questions here
10free pages
8concepts

Questions 21–25

  1. 21application · medium

    A penetration tester is performing a wireless network assessment and wants to capture session cookies from unencrypted HTTP traffic. The tester has already gained access to the same Wi-Fi network as the target. Which tool would be most appropriate for this task, and what is the primary limitation of this approach?

    Select an answer first
  2. 22expert · hard

    A security consultant is assessing a web application that uses a session token stored in a cookie. The application is behind a load balancer that terminates TLS. The consultant discovers that the session token is also included in the URL query string for tracking purposes. Which attack is most directly enabled by this design, and what is the most effective mitigation?

    Select an answer first
  3. 23application · medium

    A penetration tester is assessing a web application that uses a session cookie. The tester discovers that the application accepts any session ID provided by the client and does not regenerate the session ID after login. Which attack is the tester most likely to demonstrate?

    Select an answer first
  4. 24foundation · easy

    Which of the following is an effective countermeasure against session hijacking?

    Select an answer first
  5. 25application · medium

    A security analyst is reviewing a web application that stores session tokens in a JavaScript-accessible cookie and transmits them over HTTP. The analyst wants to reduce the risk of session theft via XSS and network sniffing. Which two configuration changes should the analyst recommend?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CEH” is a trademark of its owner, used for identification only.