Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
EC-Council logo

EC-CouncilCertified Encryption Specialist

Domain 1Objective 3

Cryptographic Principles (Diffusion, Confusion, Kerckhoff Principle) ECES Practice Questions (Page 4)

Part of the Cryptography Foundations and History domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–13 in this domain), expect 3–4 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)

37questions here
8free pages
3concepts

Questions 16–20

  1. 16expert · hard

    A security architect is choosing between two encryption algorithms for a public-key infrastructure. Algorithm A is open-source and widely analyzed. Algorithm B is proprietary and its design is kept secret. Both have similar performance and key lengths. Which choice best aligns with Kerckhoffs's principle?

    Select an answer first
  2. 17application · medium

    A network engineer is troubleshooting an encryption implementation that is leaking information about the plaintext through statistical patterns in the ciphertext. The engineer suspects that the cipher does not sufficiently hide the plaintext's structure. Which principle is most likely being violated?

    Select an answer first
  3. 18expert · hard

    A cryptanalyst is analyzing a new cipher. The cipher uses a linear feedback shift register (LFSR) to generate a keystream. The analyst discovers that the keystream is a linear function of the key and the initial state. This allows the analyst to recover the key with a known-plaintext attack. Which principle is the cipher lacking, and what is the most effective countermeasure?

    Select an answer first
  4. 19application · medium

    A cryptographer is designing a new symmetric cipher. The cipher uses a substitution box (S-box) that is carefully designed to be nonlinear. The goal is to make it difficult for an attacker who knows many plaintext-ciphertext pairs to deduce the secret key. Which cryptographic principle is the S-box primarily intended to achieve?

    Select an answer first
  5. 20application · medium

    A company is designing a proprietary encryption protocol. The design team wants to keep the algorithm secret to protect against attackers. A security consultant advises against this, citing Kerckhoffs's principle. What is the best justification for the consultant's advice?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECES” is a trademark of its owner, used for identification only.