Practice questions · Cybersecurity

Certified Ethical Hacker (CEH): Practice Questions

intermediate 30 questions

Ten original concept-check questions on core CEH ideas. Choose an answer to reveal the explanation. Remember: ethical hacking is always authorised and scoped.

By The Exam Atlas Editorial Team · Verified 2026-05-31 · ~38 min

  1. Methodology & Ethics easy

    What distinguishes ethical hacking from malicious hacking?

  2. Methodology & Ethics easy

    The first phase of an ethical hacking engagement is usually:

  3. Reconnaissance medium

    Passive reconnaissance differs from active reconnaissance in that it:

  4. Scanning & Enumeration medium

    Enumeration is best described as:

  5. System Hacking medium

    A honeypot is:

  6. Social Engineering easy

    Social engineering attacks primarily target:

  7. System Hacking medium

    Attackers 'cover their tracks' mainly to:

  8. Web & App Attacks medium

    SQL injection works by:

  9. System Hacking medium

    Privilege escalation refers to:

  10. Methodology & Ethics medium

    An ethical hacker may test:

  11. Methodology & Ethics easy

    The 'rules of engagement' (scope) of a penetration test define:

  12. Methodology & Ethics medium

    Black-box testing means the tester:

  13. Methodology & Ethics medium

    After finding vulnerabilities, an ethical hacker should:

  14. Reconnaissance medium

    Using public records, search engines and social media to gather target information is:

  15. Reconnaissance medium

    A WHOIS lookup typically reveals:

  16. Scanning & Enumeration medium

    An open port found by a port scan indicates that:

  17. Scanning & Enumeration hard

    A SYN (half-open) scan is used to:

  18. Scanning & Enumeration medium

    Packet sniffing on an unencrypted network can:

  19. System Hacking medium

    A brute-force password attack works by:

  20. System Hacking hard

    A 'pass-the-hash' attack lets an attacker:

  21. System Hacking medium

    A keylogger is malware that:

  22. System Hacking medium

    A rootkit is especially dangerous because it:

  23. Social Engineering easy

    'Tailgating' (piggybacking) is:

  24. Social Engineering medium

    'Pretexting' in social engineering means:

  25. Web & App Attacks medium

    Cross-site scripting (XSS) injects:

  26. Web & App Attacks hard

    A directory-traversal attack attempts to:

  27. Web & App Attacks medium

    The OWASP Top 10 is:

  28. Cryptography medium

    In security, a cryptographic hash function is used mainly to:

  29. Cryptography hard

    The main risk of a self-signed certificate on a public website is that:

  30. System Hacking medium

    Privilege escalation combined with 'covering tracks' suggests an attacker is trying to:

Practice questions FAQ

Are these real CEH exam questions?
No. These are original study questions written to test understanding. They are not real exam questions, exam dumps, or copied from any provider.
How should I use these practice questions?
Answer each one, read the explanation (including why the wrong options are wrong), and use the per-domain score below to focus your revision on weak areas. Revisit before exam day.
How many questions should I do before the exam?
Enough to score consistently across every domain, alongside full-length practice from official or reputable providers. Understanding why each answer is right matters more than raw volume.
What score means I am ready?
A good signal is consistently scoring around 80% or higher across all domains on questions you have not seen before, and being able to explain why the wrong options are wrong.
Should I use exam dumps?
No. Dumps (real or leaked questions) breach provider policy, can void your certification, and do not build the understanding the exam actually tests.

Sources