Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Penetration Testing Professional

Domain 7Objective 1

Wireless Penetration Testing CPENT Practice Questions (Page 6)

Part of the Specialized Testing and Reporting domain, which makes up ~23% of our current practice bank.

50questions here
10free pages
10concepts

Questions 26–30

  1. 26expert · hard

    You are performing a wireless penetration test and need to capture a WPA2 handshake from a client that is already associated with the target AP. The client is on channel 11, but your adapter is currently on channel 6. You run a deauthentication attack, but you do not capture a handshake. What is the most likely reason?

    Select an answer first
  2. 27expert · hard

    You are conducting a red-team exercise where the goal is to capture domain credentials from employees using the corporate Wi-Fi. The corporate network uses WPA2-Enterprise with PEAP-MSCHAPv2 and certificates. You set up an evil twin AP with a captive portal. However, employees are not connecting to your rogue AP even after deauthentication. What is the most likely reason?

    Select an answer first
  3. 28application · medium

    You are performing a wireless penetration test against a WPA2-PSK network. You have captured a four-way handshake, but your dictionary attack has not cracked the passphrase. The network is used by a small company, and you suspect the passphrase is based on the company name. Which technique would be most effective to improve your chances?

    Select an answer first
  4. 29expert · hard

    You are conducting an evil twin attack against a WPA2-Enterprise network. You have set up a rogue AP with the same SSID and a fake RADIUS server. However, clients are not connecting even after deauthentication. You suspect the issue is with the client configuration. What is the most likely client-side setting that prevents the attack?

    Select an answer first
  5. 30application · medium

    You have successfully cracked the WPA2-PSK passphrase of a corporate wireless network and connected your laptop to the network. You now need to enumerate the internal network to identify live hosts and services. Which tool would you use to perform active host discovery on the wireless subnet?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CPENT” is a trademark of its owner, used for identification only.