
EC-CouncilEthical Hacking Essentials
Domain 5Objective 1
Packet Sniffing Concepts EHE Practice Questions (Page 2)
Part of the Network-Level Attacks and Countermeasures domain, which makes up ~12% of our current practice bank.
40questions here
8free pages
5concepts
Questions 6–10
- 6
A security analyst is comparing passive and active sniffing techniques for a security assessment. The analyst wants to use a technique that does not inject packets into the network. Which technique should the analyst choose?
Select an answer first - 7
A network administrator is troubleshooting a slow application and suspects packet loss. The administrator wants to capture traffic on a specific switch port without disrupting the network. The switch supports port mirroring. Which configuration should the administrator apply?
Select an answer first - 8
A network administrator needs to capture packets on a Linux server's command line interface to troubleshoot a connectivity issue. The administrator wants to save the capture to a file for later analysis. Which tool and command should the administrator use?
Select an answer first - 9
A company handles sensitive customer data and wants to minimize the risk of packet sniffing on its internal network. The network carries both legacy HTTP-based applications and modern HTTPS-based services. Which countermeasure is most effective across the entire network?
Select an answer first - 10
A security analyst is investigating a suspected ARP poisoning attack. Which of the following are valid indicators of ARP poisoning? (Select all that apply.)
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “EHE” is a trademark of its owner, used for identification only.