Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Encryption Specialist

Domain 2Objective 2

Block Cipher Modes (ECB, CBC, CFB, OFB, CTR) ECES Practice Questions (Page 1)

Part of the Symmetric Cryptography and Hashing domain, which makes up ~17% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~9–14 in this domain), expect 3–5 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)

38questions here
8free pages
8concepts

Questions 1–5

  1. 1foundation · easy

    What is the primary purpose of an initialization vector (IV) in block cipher modes like CBC and CFB?

    Select an answer first
  2. 2expert · hard

    A legacy system encrypts a database column using ECB mode. The column contains a small set of possible values (e.g., status codes). An attacker has access to the ciphertext and knows the possible plaintext values. Which attack is most feasible?

    Select an answer first
  3. 3application · medium

    A software team is choosing a block cipher mode for encrypting a large file that will be stored on a distributed file system. The file is read in random-access chunks, and the team wants to minimize error propagation while allowing parallel encryption of chunks. Which mode is the best fit?

    Select an answer first
  4. 4expert · hard

    A security consultant is evaluating a system that encrypts a database of employee records. The system currently uses ECB mode. The consultant must choose a replacement mode that provides confidentiality and allows random access to individual records. The system does not require authentication. Which mode is the best recommendation?

    Select an answer first
  5. 5application · medium

    A security engineer is reviewing a legacy system that encrypts database records with a block cipher in ECB mode. The records are fixed-length and contain a small number of distinct plaintext values. The engineer notices that identical plaintext records produce identical ciphertext, allowing an attacker to infer patterns. Which change would most directly address this weakness while keeping the ability to encrypt records independently?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECES” is a trademark of its owner, used for identification only.