EC-Council CPENT Certified Penetration Testing Professional Exam Practice Test

140 प्रश्न उपलब्ध

EC-Council CPENT Certified Penetration Testing Professional Exam के लिए अपना आत्मविश्वास बढ़ाएँ। अवधारणाओं का अभ्यास करें, उत्तरों को समझें और हर सवाल के साथ अपना ज्ञान मज़बूत करें।

एक नमूना सवाल आज़माएँ
5 मुफ्त प्रश्न आज़माएँ
खाते की ज़रूरत नहीं। एक मुफ्त खाते में इस परीक्षा के लिए 20 प्रश्न शामिल हैं।
सर्टिफिकेशन परीक्षा
Professional स्तर
आपका अभ्यास
140 अभ्यास सवाल
2 घंटे 20 मिनट अभ्यास समय
5 मुफ्त प्रश्न आज़माएँ
खाते की ज़रूरत नहीं। एक मुफ्त खाते में इस परीक्षा के लिए 20 प्रश्न शामिल हैं।
प्रश्न बैंक 140 आधिकारिक उद्देश्यों के विरुद्ध जाँचे गए अभ्यास प्रश्न.
परीक्षा के विषय जानें EC-Council से आधिकारिक उद्देश्य
EC-Council140 अभ्यास प्रश्नबैंक 2026-07-24 को अपडेट हुआ
ब्लूप्रिंट सत्यापितEC-Council official objectives के साथ जाँचा गयामेटाडेटा सत्यापित 2026-06-12हम कैसे सत्यापित करते हैं

परीक्षा का परिचय और विवरण

The EC-Council Certified Penetration Testing Professional (CPENT) certification is an advanced, performance-based credential designed for cybersecurity professionals seeking to validate elite penetration testing skills. This certification distinguishes itself by focusing on real-world application, requiring candidates to demonstrate proficiency in attacking hardened enterprise networks, pivoting through segmented environments, and exploiting modern infrastructure, including IoT, OT, and cloud systems. Unlike foundational certifications, CPENT emphasizes hands-on exploitation, advanced binary analysis, and weaponization of custom exploits against live targets in a controlled lab environment. It validates a professional's ability to conduct comprehensive penetration tests that mirror sophisticated adversary tactics, moving beyond automated scanning to manual, in-depth compromise and persistence. Earning the CPENT signals to employers a practitioner's capability to lead complex security assessments, manage advanced persistent threat (APT) simulations, and provide actionable intelligence for hardening critical organizational assets. It represents a significant milestone for ethical hackers aiming to operate at the highest technical echelons of the security testing field.

नमूना प्रश्न

अभ्यास कैसे काम करता है, यह जानने के लिए एक उत्तर चुनें और व्याख्या देखें।

Methodology and Standards

The CIS Critical Security Controls v8 are referenced in a CPENT engagement scope. Which control most directly drives the requirement that a penetration test be conducted, rather than only a vulnerability scan?

Methodology and Standards

NIST SP 800-115 organizes technical security assessment into three categories. A tester is reviewing firewall rule sets for misconfigurations without running any active scan against the device. Which NIST SP 800-115 category does this activity fall under?

Report Writing and Post-Testing Actions

Following an engagement that exfiltrated proof-of-impact data (sanitized samples only) for a HIPAA-regulated client, which post-engagement step is mandated by the RoE and consistent with NIST SP 800-115 reporting guidance?

स्पष्टीकरण:

क्लाइंट के HIPAA-नियंत्रित ग्राहक के साथ एक संलग्नक के बाद जो प्रूफ-ऑफ-इंपैक्ट डेटा (शुद्धीकृत नमूने के लिए) को निकाल दिया गया था, जो RoE द्वारा निर्धारित और NIST SP 800-115 रिपोर्टिंग मार्गदर्शन के अनुसार, निम्नलिखित पोस्ट-एंगेजमेंट कदम की अनिवार्यता है:

क्लाइंट आर्टिफैक्ट (शुद्धीकृत नमूने, पकड़े गए हैश, आंतरिक दस्तावेज) का सुरक्षित हटाना टेस्टर सिस्टम से अनुबंधित संरक्षण अवधि के भीतर, एक हस्ताक्षरित डिक्शनर्टिफिकेट के साथ क्लाइंट को प्रदान करना, कैनोनिकल पोस्ट-एंगेजमेंट कदम है। डेटा को अनंत काल तक संरक्षित करने से NDA का उल्लंघन होता है। तीसरे पक्षों को आगे करना एक उल्लंघन है। ब्लॉग पर विधि को पोस्ट करने से बिना अनामकरण के ग्राहक की पहचान का जोखिम है।

Report Writing and Post-Testing Actions

A CPENT report executive summary is being drafted for the Board. Which design choice is the highest-quality professional practice for the executive-summary section?

स्पष्टीकरण:

एक सी पी ई एन टी रिपोर्ट के कार्यकारी सारांश के लिए डिज़ाइन का चयन किया जा रहा है, जो बोर्ड के लिए तैयार किया जा रहा है। कार्यकारी सारांश के अनुभाग के लिए उच्चतम गुणवत्ता वाली पेशेवर प्रथा कौन सी है?

कार्यकारी सारांश को व्यवसायिक जोखिम को व्यवसायिक भाषा में संवाद करना चाहिए: जोखिम स्थिति का संक्षिप्तीकरण, शीर्ष 3-5 खोजें जो प्रभाव (डेटा उजागर, संचालन व्यवधान, नियामक प्रभाव) के रूप में व्यक्त की जाती हैं, और एक उपचार मार्गदर्शिका जिसमें अनुमानित प्रयास/लागत श्रेणियां शामिल हैं। तकनीकी नियंत्रण आउटपुट (एनएमएपी, एसक्यूएलमैप, पेलोड्स) खोजें की विस्तार और पूर्वापेक्षा में आता है। सीवीएस वेक्टर प्रति-खोज अनुभागों में आते हैं। टूल नाम विधि का हिस्सा है, न कि कार्यकारी सारांश।

Active Directory and Pivoting

An LSASS-protected (Credential Guard / RunAsPPL) target prevents standard Mimikatz `sekurlsa::logonpasswords`. Which alternative, blueprint-relevant approach does NOT require disabling LSASS protection on the target?

स्पष्टीकरण:

क्रेडेंशियल गार्ड / रनअसपीपीएल (LSASS-protected) लक्ष्य पर मिमिकाट्स (Mimikatz) का मानक sekurlsa::logonpasswords कमांड प्रतिबंधित करता है। जो वैकल्पिक, ब्लूप्रिंट-संबंधी दृष्टिकोण है जो लक्ष्य पर LSASS सुरक्षा को अक्षम करने के बिना आवश्यक नहीं है वह क्या है?

वायर पर क्रेडेंशियल कैप्चर करने के लिए रिस्पोंडर (Responder) + नटल्मरेले (ntlmrelayx) का उपयोग करते समय, जो कि सामान्य उपयोगकर्ता गतिविधि के दौरान होता है, LSASS को डंप करने की आवश्यकता नहीं होती है - यह पारित्राणिक सत्यापन सामग्री को इकट्ठा करता है। LSAS सुरक्षा को अक्षम करने के लिए रजिस्ट्री में परिवर्तन की आवश्यकता होती है (और सुरक्षित बूट यह कार्य को रोक सकता है)। एक ज्ञात LSASS-डंपिंग ड्राइवर (उदाहरण के लिए, मिमिड्रीवी.एसयू (mimidrv.sys)) का उपयोग करने के लिए स्थानीय प्रशासक और एक हस्ताक्षरित ड्राइवर की आवश्यकता होती है जो दुरुपयोग के लिए संवेदनशील है। पीएसएक्सएक्स (PsExec) के माध्यम से एक ताज़ा प्रक्रिया में प्रवेश करना और फिर डंप करना अभी भी LSAS सुरक्षा द्वारा प्रतिबंधित है। क्रेडेंशियल-रिले पथ LSASS-भंग करने वाला वैकल्पिक दृष्टिकोण है।

करियर के अवसर और वेतन

मध्य वेतन: $129,180US मार्केट– Information Security Analysts

स्रोत: BLS Occupational Employment and Wage Statistics, May 2025 -- Information Security Analysts (SOC 15-1212), US national. Occupation median, not a certification salary. (2025)

Information Security Analysts

जब तक लोकल रेंज न दिखे, ये US मार्केट के आंकड़े हैं।

इस परीक्षा में क्या शामिल है

01Active Directory Penetration Testing

विषय

  • AD reconnaissance and enumeration
  • Password spraying and hash extraction
  • Kerberos attacks (Kerberoasting, Golden/Silver Ticket)
  • Lateral movement in AD

सीखने के उद्देश्य

  • AD reconnaissance and enumeration
  • Password spraying and hash extraction
  • Kerberos attacks (Kerberoasting, Golden/Silver Ticket)
  • Lateral movement in AD

02API and JSON Web Token Penetration Testing

विषय

  • API reconnaissance
  • Authentication and authorization testing
  • JWT security evaluation

सीखने के उद्देश्य

  • API reconnaissance
  • Authentication and authorization testing
  • JWT security evaluation

03Introduction to Penetration Testing and Methodologies

विषय

  • Principles and objectives of penetration testing
  • Penetration testing methodologies and frameworks (MITRE ATT&CK)
  • Compliance-driven penetration testing

सीखने के उद्देश्य

  • Principles and objectives of penetration testing
  • Penetration testing methodologies and frameworks (MITRE ATT&CK)
  • Compliance-driven penetration testing

04IoT Penetration Testing

विषय

  • IoT firmware acquisition, extraction, and analysis
  • IoT network and protocol security testing
  • Persistence in IoT environments

सीखने के उद्देश्य

  • IoT firmware acquisition, extraction, and analysis
  • IoT network and protocol security testing
  • Persistence in IoT environments

05Lateral Movement and Pivoting

विषय

  • Pass-the-Hash, Pass-the-Ticket attacks
  • Advanced pivoting and tunneling (HTTP, DNS, SSH, ICMP)
  • Double pivoting

सीखने के उद्देश्य

  • Pass-the-Hash, Pass-the-Ticket attacks
  • Advanced pivoting and tunneling (HTTP, DNS, SSH, ICMP)
  • Double pivoting

06Linux Exploitation and Privilege Escalation

विषय

  • Linux reconnaissance and vulnerability scanning
  • Initial access to Linux systems
  • Linux privilege escalation

सीखने के उद्देश्य

  • Linux reconnaissance and vulnerability scanning
  • Initial access to Linux systems
  • Linux privilege escalation

07Open-Source Intelligence (OSINT)

विषय

  • OSINT on target domain, web, and employees
  • OSINT automation tools
  • Attack surface mapping

सीखने के उद्देश्य

  • OSINT on target domain, web, and employees
  • OSINT automation tools
  • Attack surface mapping

08Penetration Testing Scoping and Engagement

विषय

  • Pre-engagement activities and RFP response
  • Rules of Engagement (ROE) drafting
  • Legal and regulatory considerations

सीखने के उद्देश्य

  • Pre-engagement activities and RFP response
  • Rules of Engagement (ROE) drafting
  • Legal and regulatory considerations

09Perimeter Defense Evasion Techniques

विषय

  • Firewall penetration testing
  • IDS evasion techniques
  • Router and switch security testing

सीखने के उद्देश्य

  • Firewall penetration testing
  • IDS evasion techniques
  • Router and switch security testing

10Report Writing and Post-Testing Actions

विषय

  • Report structure and components
  • Report development and delivery
  • Post-testing actions, retesting, and validation

सीखने के उद्देश्य

  • Report structure and components
  • Report development and delivery
  • Post-testing actions, retesting, and validation

11Reverse Engineering, Fuzzing, and Binary Exploitation

विषय

  • Linux and Windows binary analysis
  • Buffer overflow and heap overflow exploitation
  • Application fuzzing

सीखने के उद्देश्य

  • Linux and Windows binary analysis
  • Buffer overflow and heap overflow exploitation
  • Application fuzzing

12Social Engineering Penetration Testing

विषय

  • Off-site social engineering (phishing, phone)
  • On-site social engineering
  • Countermeasures documentation

सीखने के उद्देश्य

  • Off-site social engineering (phishing, phone)
  • On-site social engineering
  • Countermeasures documentation

13Web Application Penetration Testing

विषय

  • Web application footprinting and enumeration
  • Vulnerability scanning (OWASP framework)
  • SQL injection and other injection vulnerabilities
  • Business logic and client-side testing

सीखने के उद्देश्य

  • Web application footprinting and enumeration
  • Vulnerability scanning (OWASP framework)
  • SQL injection and other injection vulnerabilities
  • Business logic and client-side testing

14Windows Exploitation and Privilege Escalation

विषय

  • Windows reconnaissance and vulnerability assessment
  • Privilege escalation and UAC bypass
  • Post-exploitation and antivirus evasion

सीखने के उद्देश्य

  • Windows reconnaissance and vulnerability assessment
  • Privilege escalation and UAC bypass
  • Post-exploitation and antivirus evasion

परीक्षा विवरण CPENT

परीक्षा कोड CPENT
विक्रेता EC-Council
परीक्षा प्रारूप Linear
ऑनलाइन निगरानी उपलब्ध
इसमें उपलब्ध
English

अक्सर पूछे जाने वाले प्रश्न

CPENT परीक्षा देने के लिए मुख्य पूर्वापेक्षाएँ क्या हैं?

CPENT परीक्षा प्रारूप अन्य पेनिट्रेशन टेस्टिंग प्रमाणपत्रों से कैसे भिन्न है?

CPENT प्रमाणित पेशेवर के लिए प्राथमिक करियर परिणाम क्या है?

CPENT पाठ्यक्रम आधुनिक हमले की सतहों जैसे OT और IoT को कैसे संबोधित करता है?

CPENT के लिए पुनः प्रमाणन नीति क्या है?