exam questions

Exam 312-50v11 All Questions

View all questions & answers for the 312-50v11 exam

Exam 312-50v11 topic 1 question 222 discussion

Actual exam question from ECCouncil's 312-50v11
Question #: 222
Topic #: 1
[All 312-50v11 Questions]

Nicolas just found a vulnerability on a public-facing system that is considered a zero-day vulnerability. He sent an email to the owner of the public system describing the problem and how the owner can protect themselves from that vulnerability. He also sent an email to Microsoft informing them of the problem that their systems are exposed to.
What type of hacker is Nicolas?

  • A. Black hat
  • B. White hat
  • C. Gray hat
  • D. Red hat
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
gtlusciak
Highly Voted 2 years, 1 month ago
It doesn't say if it's with the company's permission. If it is - white hat if it isn't - gray hat
upvoted 19 times
noosa0707
2 years, 1 month ago
I think the criteria here is whether the person has good intentions. Apparently he wants that system to be free from problems so he is a white hat.
upvoted 16 times
...
...
chongchangchi
Highly Voted 2 years ago
Selected Answer: C
Gray hats are the individuals who work both offensively and defensively at various times. Gray hats might help hackers to find various vulnerabilities in a system or network and, at the same time, help vendors to improve products (software or hardware) by checking limitations and making them more secure. White Hat - a hacker who has authority to perform security assessment or with legal contract and agreements to an organization. Gray Hat - don't have authority to perform any security assessment to anyone.
upvoted 10 times
...
sandy3010
Most Recent 3 weeks ago
Who only have permission to find a vulnerability he called as a white hat other-wise they called as gray hat
upvoted 1 times
...
RNSJ
1 month, 1 week ago
Selected Answer: B
it's public facing, so he didn't need permission. It's White Hat
upvoted 2 times
...
YourFriendlyNeighborhoodSpider
1 month, 1 week ago
Selected Answer: B
ChatGPT: Nicolas would be classified as a White-hat hacker. White-hat hackers are ethical hackers who use their skills to help organizations and individuals by finding and fixing security vulnerabilities. In this case, Nicolas discovered a zero-day vulnerability and responsibly disclosed it to the owner of the public-facing system, providing guidance on how to protect against it. Additionally, Nicolas informed Microsoft about the vulnerability, contributing to the overall improvement of security. The key characteristic of a white-hat hacker is the ethical use of their skills to enhance security, often through activities such as penetration testing, vulnerability assessment, and responsible disclosure of security issues.
upvoted 2 times
...
MH2
3 months, 1 week ago
Selected Answer: C
White-hat hackers have permissions while grey-hat hackers don't and work both offensively and defensively
upvoted 1 times
...
ostorgaf
3 months, 3 weeks ago
Selected Answer: C
Nicolas falls into the category of a gray hat hacker. Gray hat hackers are individuals who may discover and disclose vulnerabilities or security issues to the affected parties, but they may not have explicit permission to do so. In this case, Nicolas identified a zero-day vulnerability and informed both the system owner and the relevant company (Microsoft) about the issue. While his intentions seem to be responsible, the fact that he discovered a zero-day vulnerability without explicit permission makes him a gray hat hacker.
upvoted 1 times
...
Vincent_Lu
3 months, 4 weeks ago
Selected Answer: C
According to the narrative Nicholas did not have the permission from the system owner.
upvoted 1 times
...
OA1
4 months, 2 weeks ago
Selected Answer: C
Neither the owner of the public facing system nor Microsoft gave Nicolas the permission to do it, he was not employed by them, so it's Gray hat.
upvoted 1 times
...
PenguinHanHan
4 months, 2 weeks ago
Selected Answer: C
Agreed no permission.
upvoted 1 times
...
Melendez
7 months ago
Selected Answer: C
He didn’t have permission
upvoted 1 times
...
akailah88
7 months, 1 week ago
Selected Answer: C
Gray hat hackers often look for vulnerabilities in a system without the owner's permission or knowledge. If issues are found, they report them to the owner, sometimes requesting a small fee to fix the problem C Answer
upvoted 1 times
...
victorfs
7 months, 2 weeks ago
Selected Answer: B
The correct option is B White hacker
upvoted 1 times
...
SugeSlim
8 months, 1 week ago
Selected Answer: C
White hat hackers are individuals authorized to find and exploit vulnerabilities in a system. Gray Hat hackers typically don’t cause damages to a victim — they discover vulnerabilities that can potentially cause damages. Then, these grey hatters reach out to the affected parties and notify them regarding the issues.
upvoted 1 times
...
Eurepedes
9 months, 2 weeks ago
The correct is C. They did not hire him or give him the permission to do it.
upvoted 1 times
...
Flav_man
9 months, 4 weeks ago
Selected Answer: B
the intention of this question is to show how a white hat hacker reports a vulnerability responsibly... it's not gray... b/c we are not told HOW the hacker found the vulnerability... it could have been by accident... nothing malicious
upvoted 3 times
...
juliosc
10 months, 2 weeks ago
Selected Answer: D
It was unauthorized.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago