Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam 312-50v12 All Questions

View all questions & answers for the 312-50v12 exam

Exam 312-50v12 topic 1 question 210 discussion

Actual exam question from ECCouncil's 312-50v12
Question #: 210
Topic #: 1
[All 312-50v12 Questions]

During a red team engagement, an ethical hacker is tasked with testing the security measures of an organization's wireless network. The hacker needs to select an appropriate tool to carry out a session hijacking attack. Which of the following tools should the hacker use to effectively perform session hijacking and subsequent security analysis, given that the target wireless network has the Wi-Fi Protected Access-pre-shared key (WPA-PSK) security protocol in place?

  • A. Hetty
  • B. bettercap
  • C. DroidSheep
  • D. FaceNiff
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
kinaJ
3 months, 4 weeks ago
A. Hetty: is primarily used for HTTP and HTTPS proxy and session manipulation, but it is not specifically designed for session hijacking in wireless networks. B. bettercap: is a comprehensive and flexible network attack and monitoring tool that supports a wide range of attacks. It is well-suited for performing attacks on various network protocols and can be used to capture and manipulate traffic, making it effective for session hijacking in a WPA-PSK network. C. DroidSheep: is an Android application used for session hijacking on unencrypted Wi-Fi networks. D. FaceNiff: is another tool designed for session hijacking but is specifically tailored for capturing sessions over unsecured (HTTP) networks.
upvoted 1 times
...
GK2205
4 months ago
Selected Answer: B
The difference here is between trying to compromise the network or devices on the network. Bettercap is for the network, most others here are for compromising devices.
upvoted 1 times
GK2205
4 months ago
BTW - Bettercap does do hijacking also (HID, Bluetooth). Failed to highlight that fact in my original comment. it also does IP v4 / v6 MITM.
upvoted 1 times
...
...
LordXander
7 months, 3 weeks ago
Selected Answer: B
I would go with B, because it is in the labs and EC likes to put questions about the tools they talk in detail about
upvoted 1 times
...
mossj
8 months ago
Selected Answer: B
B. bettercap CEHv12. 1026 bettercap is a portable framework written in Go that allows security researchers, red teamers, and reverse engineers to perform reconnaissance and various attacks on Wi-Fi networks, Bluetooth low energy devices, wireless HID devices, and IPv4/IPv6 networks. key here is and subsequent security analysis
upvoted 1 times
...
anarchyeagle
8 months, 4 weeks ago
ChatGPT: B. bettercap Explanation: bettercap: is a powerful, flexible, and portable tool designed for network attacks and monitoring. It is well-suited for a wide range of network attack scenarios, including session hijacking on wireless networks. bettercap is capable of performing Man-in-the-Middle (MitM) attacks, which are essential for session hijacking. It can sniff network traffic, capture cookies, and exploit various network protocols to hijack sessions. Its capabilities make it a suitable choice for attacking networks with WPA-PSK security, as it can work after gaining access to the network or when conducting attacks within the network perimeter.
upvoted 1 times
Miro009900
6 months, 1 week ago
Stop using ChatGPT all the time.Its mostly wrong.
upvoted 1 times
...
...
sosindi
9 months ago
Bettercap - is a comprehensive network attack and monitoring framework suitable for various types of attacks, including session hijacking, on wireless networks with WPA-PSK security protocols. Hetty is a tool for wireless network analysis and auditing but does not specialize in session hijacking attacks. DroidSheep and FaceNiff are Android applications designed for session hijacking attacks targeting mobile devices, specifically over Wi-Fi networks.
upvoted 1 times
...
brrbrr
9 months ago
Selected Answer: B
B. bettercap
upvoted 1 times
...
duke_of_kamulu
9 months ago
i think the key WORD is SESSION HIJACKING -The DroidSheep tool is used for session hijacking on Android devices connected to a common wireless network. It obtains the session ID of active users on the Wi-Fi network and uses it to access a website as an authorized user. A DroidSheep user can easily observe the activities of authorized users on websites. It can also hijack social accounts by obtaining the session ID.
upvoted 1 times
...
sosindi
9 months, 1 week ago
Selected Answer: C
DroidSheep
upvoted 1 times
...
przemyslaw1
9 months, 1 week ago
Selected Answer: D
FaceNiff is an Android app that allows a user to sniff and intercept web-session profiles over the WiFi network that the user’s mobile device is connected to. Although FaceNiff can hijack sessions only when the WiFi network does not use the Extensible Authentication Protocol (EAP), it works on any private network, including open, Wired Equivalent Privacy (WEP), Wi-Fi Protected Access–pre-shared key (WPA-PSK), and WPA2-PSK networks.
upvoted 1 times
...
przemyslaw1
9 months, 1 week ago
Selected Answer: C
DroidSheep is a simple Android tool for web session hijacking
upvoted 1 times
przemyslaw1
9 months, 1 week ago
DroidSheep can capture sessions using the libpcap library and it supports OPEN networks, WEP encrypted networks, and WPA and WPA2 (PSK only) encrypted networks.
upvoted 1 times
...
...
xbsumz
9 months, 2 weeks ago
Could someone help me confirm the accuracy of this data
upvoted 1 times
...
insaniunt
9 months, 2 weeks ago
Selected Answer: B
B. bettercap
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...