
EC-CouncilCertified Penetration Testing Professional
Domain 7Objective 1
Wireless Penetration Testing CPENT Practice Questions (Page 3)
Part of the Specialized Testing and Reporting domain, which makes up ~23% of our current practice bank.
50questions here
10free pages
10concepts
Questions 11–15
- 11
You are performing wireless reconnaissance in an area with multiple access points. You want to identify which access points are using WPA3 and which are using WPA2. Using airodump-ng, which field in the output will help you determine the security protocol?
Select an answer first - 12
Which tool is commonly used to crack a WEP key from a captured packet capture file containing IVs?
Select an answer first - 13
You are testing a network that uses WPS. The AP has WPS enabled, but you are unsure if it is vulnerable to the PIN brute-force attack. You want to test this without causing a permanent lockout. What is the best approach?
Select an answer first - 14
Which wireless security protocol is considered cryptographically broken because it uses the RC4 cipher with a weak key scheduling algorithm and can be cracked by capturing enough initialization vectors?
Select an answer first - 15
You are planning a wireless penetration test for a client that has multiple office locations. The client wants to test the security of their wireless networks, but they have a limited budget and want to prioritize the most critical locations. They also want to minimize disruption to their operations. Which approach would be the most effective for scoping the test?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.