
EC-CouncilDigital Forensics Essentials
Domain 3Objective 2
Password Protection and Encryption Techniques DFE Practice Questions (Page 8)
Part of the Defeating Anti-Forensics Techniques domain, which makes up ~13% of our current practice bank.
49questions here
10free pages
8concepts
Questions 36–40
- 36
A forensic team is investigating a case where the suspect used encryption to hide evidence. The team has a valid warrant, but the suspect refuses to provide the password. The team is considering using a key extraction tool that requires physical access to the running system. Which factor is most important to consider?
Select an answer first - 37
What is a key characteristic of symmetric encryption?
Select an answer first - 38
Which technique is commonly used to bypass password protection on a Windows system by resetting the password to a known value?
Select an answer first - 39
A forensic investigator is examining a file that was encrypted with a symmetric algorithm. The investigator has the encryption key. Which statement is true about decrypting the file?
Select an answer first - 40
A forensic team is investigating a suspect's laptop that has an encrypted hard drive. The suspect is cooperating but claims to have forgotten the password. The team has a legal warrant to search the laptop. Which action is most appropriate from a legal and ethical standpoint?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “DFE” is a trademark of its owner, used for identification only.