
EC-CouncilCertified Encryption Specialist
Domain 5Objective 2
Rainbow Tables and Password Cracking ECES Practice Questions (Page 7)
Part of the Cryptanalysis domain, which makes up ~14% of our current practice bank. EC-Council does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 2–4 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)
35questions here
7free pages
9concepts
Questions 31–35
- 31
A security team is evaluating whether to use rainbow tables to crack a database of unsalted MD5 hashes. The passwords are known to be 8-character random alphanumeric (62^8 ≈ 2.18 x 10^14). The team has 10 TB of storage and a week of compute time. Which conclusion is most accurate?
Select an answer first - 32
What is the primary purpose of key stretching in password storage?
Select an answer first - 33
A security team is tasked with cracking a set of 500 unsalted MD5 hashes from a legacy system. The team has a server with 2 TB of storage and 7 days of compute time. They are considering building a rainbow table for the 8-character alphanumeric keyspace (62^8). Which approach is most practical given the constraints?
Select an answer first - 34
Which of the following best describes the structure of a rainbow table?
Select an answer first - 35
An analyst is using RainbowCrack to crack a set of LM hashes from a Windows system. The analyst has a rainbow table file for LM hashes but is unsure whether the table covers the specific password. Which step should the analyst take first to determine if the table is useful?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to ECES
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “ECES” is a trademark of its owner, used for identification only.