
EC-CouncilCertified Encryption Specialist
Domain 1Objective 3
Cryptographic Principles (Diffusion, Confusion, Kerckhoff Principle) ECES Practice Questions (Page 6)
Part of the Cryptography Foundations and History domain, which makes up ~16% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–13 in this domain), expect 3–4 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)
37questions here
8free pages
3concepts
Questions 26–30
- 26
A security architect is evaluating a legacy block cipher for encrypting database backups. The cipher has a fixed 64-bit block size and a simple substitution-permutation network. The architect is concerned that patterns in the plaintext (e.g., repeated headers) might appear in the ciphertext. Which property of the cipher should the architect verify to ensure that a single plaintext bit change affects many ciphertext bits?
Select an answer first - 27
A database administrator is encrypting a table that contains many rows with identical values in a column. The administrator is concerned that an attacker might infer the frequency of these values from the ciphertext. Which property of the encryption algorithm would most directly mitigate this risk?
Select an answer first - 28
A security architect is evaluating two block ciphers for a high-throughput encryption appliance. Cipher X has excellent diffusion but poor confusion. Cipher Y has excellent confusion but poor diffusion. The appliance will encrypt a large volume of structured data with many repeated fields. The architect must choose one cipher. Which consideration is most critical?
Select an answer first - 29
A cryptography student is implementing a simple Feistel cipher for a class project. The instructor emphasizes that the round function must include both a substitution step and a permutation step. What is the primary reason for including the permutation step?
Select an answer first - 30
A government agency is considering a new encryption standard. They require that the algorithm be openly published and subject to public scrutiny, but they are concerned that this will weaken security. Which principle directly addresses this concern?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECES” is a trademark of its owner, used for identification only.