Cybersecurity

Certified Ethical Hacker (CEH)

Certified Ethical Hacker

By The Exam Atlas Editorial Team · Verified 2026-05-29

Quick facts

ProviderEC-Council
Exam code312-50
Levelintermediate
FormatMultiple choice (with an optional practical exam)
Questions125 questions
Duration4 hours
Passing scoreCut score varies by exam form (roughly 60–85%)
Exam fee$1199 (plus eligibility / training)
Validity3 years (ECE credits)
LanguagesEN

Overview

The Certified Ethical Hacker (CEH) covers the tools and techniques of offensive security from a defender's standpoint: reconnaissance, scanning, exploitation, web and wireless attacks, and more. It is broad and knowledge-based, with an optional hands-on practical exam.

CEH is well recognised by HR and meets some government baselines, which is its main strength. Practitioners often debate its depth versus hands-on alternatives, so weigh it against more practical offensive certifications if a red-team role is your goal.

Who it is for

Who it is not for

Exam structure

Reconnaissance and scanningFootprinting, enumeration, vulnerability analysis
System and network hackingGaining and maintaining access
Web, application and wireless attacksCommon exploitation techniques
Cloud, IoT and cryptographyEmerging and supporting areas

Realistic study time

Bars show relative effort, not a guarantee. Your time depends on background and study method.

What it really costs

Exam fee~US$1,199 — plus eligibility/application
Official trainingOften US$1,000+ — or prove experience to skip
RetakeAdditional voucher fee
RenewalECE credits over 3 years

Fees change and vary by region. Confirm the current amount on the official site before you register.

Is it worth it?

Worth it where CEH is explicitly required or HR-recognised, especially for government-adjacent roles. If your goal is a hands-on penetration-testing job, many practitioners value performance-based offensive certifications more, so compare before committing.

What to do next

CEH proves breadth of offensive concepts; hands-on roles often value practical labs more. Compare with Security+ for a cheaper entry, or move toward CISSP for seniority.

FAQ

Is CEH respected?
It is well recognised by HR and meets some compliance baselines. Among hands-on practitioners, opinions vary, and practical offensive certifications are often rated more highly for red-team work.
Do I need experience or training for CEH?
Yes. You either take official EC-Council training or apply for eligibility with two years of security experience.
How is CEH maintained?
Through EC-Council Continuing Education (ECE) credits over a three-year cycle.

Related exams

Free study resources

Sources