Courseiva
Knowledge + Practice
CertificationsVendorsCareer RoadmapsLabs & ToolsStudy GuidesGlossaryPractice Questions
C
Courseiva

Free IT certification practice questions with explained answers for CCNA, CompTIA, AWS, Azure, Google Cloud, and more.

Certification Practice Questions

CCNA practice questionsSecurity+ SY0-701 practice questionsAWS SAA-C03 practice questionsAZ-104 practice questionsAZ-900 practice questionsCLF-C02 practice questionsA+ Core 1 practice questionsGoogle Cloud ACE practice questionsCySA+ CS0-003 practice questionsNetwork+ N10-009 practice questions
View all certifications →

Product

CertificationsCertification PathsExam TopicsPractice TestsExam Dumps vs Practice TestsStudy HubComparisons

Company

AboutContactEditorial PolicyQuestion Writing PolicyTrust Center

Legal

Privacy PolicyTerms of Service

Courseiva is a free IT certification practice platform offering original exam-style practice questions, detailed explanations, topic-based practice, mock exams, readiness tracking, and study analytics for Cisco, CompTIA, Microsoft, AWS, and other technology certifications.

© 2026 Courseiva. Courseiva is operated by JTNetSolutions Ltd. All rights reserved.

Courseiva is an independent certification practice platform and is not affiliated with, endorsed by, or sponsored by Cisco, Microsoft, AWS, CompTIA, Google, ISC2, ISACA, or any other certification vendor. Vendor names and certification marks are used only to identify the exams learners are preparing for.

HomeCertificationsCEHPractice Test
Free — No Signup RequiredEC-Council· Updated 2026

CEH Practice Test — Free Certified Ethical Hacker CEH Questions with Explanations

Free CEH practice test — 1,010+ CEH practice questions with detailed explanations across all 13 official CEH exam domains. Every set is scored and drawn from the live question bank — so you practise exactly what the exam tests, not outdated dumps.

1010+ questions in bank240 min exam13 domainsPass mark: 700/1000
CEH Practice Test 1Free CEH Practice Test 2CEH Practice Exam 3CEH Practice Questions 4Exam simulation
Exam OverviewStudy GuideExam DomainsSample QuestionsPractice Test

Free Practice

CEH Practice Test

Pick a session size and start instantly.

CEH Practice Test 110 qFree CEH Practice Test 210 qCEH Practice Exam 310 qCEH Practice Questions 410 qCEH Practice Test 510 qFree CEH Practice Test 610 qCEH Practice Exam 710 qCEH Practice Questions 810 qExam simulation100 q
1,010+ questions · All free

By Domain

Footprinting, Reconnaissance and Scanning—Enumeration and System Hacking—Malware, Social Engineering and Network Attacks—Web Application and Injection Attacks—Introduction to Ethical Hacking—Scanning Networks and Enumeration—

What Courseiva includes — free

Courseiva includes 1,010+ Certified Ethical Hacker CEH practice questions across the official exam domains.

Feature

Courseiva

Free practice questions
Exam-style questions
Answer explanations
Official domains covered
Topic-based practice
Mock exam mode
Missed-question review
Bookmarked-question review
Weak-topic recommendations
Readiness tracking

What this CEH practice test covers

This free CEH practice test mirrors the structure and difficulty of the real Certified Ethical Hacker CEH exam. Every question is written against the official 2026 exam blueprint published by EC-Council, ensuring you practise exactly what the exam tests — not last year's objectives.

The CEH blueprint is divided into 13weighted domains. Questions on this page are distributed proportionally across each domain, so the mix you see here reflects the same weighting you'll face on exam day. High-weight domains like Footprinting, Reconnaissance and Scanning and Enumeration and System Hacking contribute the most questions, meaning focused practice on these areas gives you the highest return on study time.

CEH Exam Blueprint — 13 Domains

Footprinting, Reconnaissance and Scanning

—

Enumeration and System Hacking

—

Malware, Social Engineering and Network Attacks

—

Web Application and Injection Attacks

—

Introduction to Ethical Hacking

—

Scanning Networks and Enumeration

—

Vulnerability Analysis and System Hacking

—

Advanced Topics: Wireless, Cloud, IoT, Cryptography

—

Footprinting and Reconnaissance

—

Network and Web Application Attacks

—

Wireless, IoT and Cloud Security

—

Cryptography and Malware Analysis

—

Social Engineering and Physical Security

—

All CEH Practice Sets

65 numbered sets, 13 domain question banks, and targeted sessions — every page is a unique set of questions.

Numbered Sets — Full Question Pool

Practice Test 1Practice Test 2Practice Test 3Practice Test 4Practice Test 5Practice Test 6Practice Test 7Practice Test 8Practice Test 9Practice Test 10Practice Test 11Practice Test 12Practice Test 13Practice Test 14Practice Test 15Practice Test 16Practice Test 17Practice Test 18Practice Test 19Practice Test 20Practice Test 21Practice Test 22Practice Test 23Practice Test 24Practice Test 25Practice Test 26Practice Test 27Practice Test 28Practice Test 29Practice Test 30Practice Test 31Practice Test 32Practice Test 33Practice Test 34Practice Test 35Practice Test 36Practice Test 37Practice Test 38Practice Test 39Practice Test 40Practice Test 41Practice Test 42Practice Test 43Practice Test 44Practice Test 45Practice Test 46Practice Test 47Practice Test 48Practice Test 49Practice Test 50Practice Test 51Practice Test 52Practice Test 53Practice Test 54Practice Test 55Practice Test 56Practice Test 57Practice Test 58Practice Test 59Practice Test 60Practice Test 61Practice Test 62Practice Test 63Practice Test 64Practice Test 65

Practice by Domain

Footprinting, Reconnaissance and Scanning

155 questions

10 Questions15 Questions20 Questions30 Questions40 Questions50 Questions100 Questions
All 155 questions →
Enumeration and System Hacking

189 questions

10 Questions15 Questions20 Questions30 Questions40 Questions50 Questions100 Questions
All 189 questions →
Malware, Social Engineering and Network Attacks

216 questions

10 Questions15 Questions20 Questions30 Questions40 Questions50 Questions100 Questions
All 216 questions →
Web Application and Injection Attacks

172 questions

10 Questions15 Questions20 Questions30 Questions40 Questions50 Questions100 Questions
All 172 questions →
Introduction to Ethical Hacking

13 questions

10 Questions
All 13 questions →
Scanning Networks and Enumeration

19 questions

10 Questions
All 19 questions →
Vulnerability Analysis and System Hacking

19 questions

10 Questions
All 19 questions →
Advanced Topics: Wireless, Cloud, IoT, Cryptography

129 questions

10 Questions15 Questions20 Questions30 Questions40 Questions50 Questions
All 129 questions →
Footprinting and Reconnaissance

18 questions

10 Questions
All 18 questions →
Network and Web Application Attacks

19 questions

10 Questions
All 19 questions →
Wireless, IoT and Cloud Security

24 questions

10 Questions15 Questions
All 24 questions →
Cryptography and Malware Analysis

20 questions

10 Questions15 Questions
All 20 questions →
Social Engineering and Physical Security

17 questions

10 Questions
All 17 questions →

Targeted Sessions

Exam Simulation

100 questions · 120 minutes · timed

Hard Questions

25 difficult questions · full explanations

Quick Quiz

10 questions · under 10 minutes

Practice by Question Format

Multiple Select236 questions

Choose all correct answers

10 Questions20 Questions30 Questions40 Questions50 Questions60 Questions
Matching10 questions

Match concepts to definitions

10 Questions
Drag & Drop10 questions

Arrange steps in the correct order

10 Questions

Study guide chapters & topic pages

Each chapter page covers one topic in depth — theory, key concepts, and focused practice questions. Use these to close knowledge gaps before returning to full practice tests.

Footprinting, Reconnaissance and Scanning practice questionsEnumeration and System Hacking practice questionsMalware, Social Engineering and Network Attacks practice questionsWeb Application and Injection Attacks practice questionsIntroduction to Ethical Hacking practice questionsScanning Networks and Enumeration practice questionsVulnerability Analysis and System Hacking practice questionsAdvanced Topics: Wireless, Cloud, IoT, Cryptography practice questionsFootprinting and Reconnaissance practice questionsNetwork and Web Application Attacks practice questionsWireless, IoT and Cloud Security practice questionsCryptography and Malware Analysis practice questionsSocial Engineering and Physical Security practice questionsCEH fundamentals practice questionsCEH scenario practice questionsCEH troubleshooting practice questions

How to use this practice test effectively

Getting the most from practice questions requires more than just clicking through answers. Here is the study method used by candidates who pass CEH on their first attempt:

Answer before revealing

Read each CEH question fully, eliminate obviously wrong choices, then commit to an answer before clicking to reveal. This active recall process is what builds lasting knowledge.

Read every explanation

Even when you answer correctly, read the full explanation. Knowing WHY the right answer is correct — and why the distractors are wrong — is what separates a 750 score from a 900 score.

Track weak domains

Note which CEH domains you get wrong most often. Then do a targeted 20-30 question session focused only on that domain until your accuracy improves.

Simulate exam pacing

The real CEH gives you roughly 1.9 minutes per question. Use the 60 or 120-question sessions to practise hitting that pace comfortably.

Most candidates who pass CEH on their first attempt report doing between 400 and 800 practice questions over 4–8 weeks of preparation. With 1,010+ questions in the Courseiva bank, you have more than enough material to build that repetition without seeing the same question twice.

Practice tests

CEH Practice Test 110 questionsFree CEH Practice Test 210 questionsCEH Practice Exam 310 questionsCEH Practice Questions 410 questionsCEH Practice Test 510 questionsFree CEH Practice Test 610 questionsCEH Practice Exam 710 questionsCEH Practice Questions 810 questions

CEH practice questions

Answer each question to reveal the full explanation and correct answer. This starter set is drawn from all 13 exam domains in blueprint proportion. Use the session selector to start a longer focused practice run.

0 / 13
1
Footprinting, Reconnaissance and Scanning

A security analyst runs the following Nmap command: nmap -sS -sV -O -p 22,80,443,3389 192.168.1.0/24. Which of the following BEST describes what this scan will accomplish?

Select an answer to reveal the explanation

2
Enumeration and System Hacking

A security analyst wants to enumerate NetBIOS names on a Windows network. Which built-in Windows command-line tool should they use?

Select an answer to reveal the explanation

3
Malware, Social Engineering and Network Attacks

A security analyst notices a high volume of ICMP Echo Reply packets on the network. The source IPs are varied, but the destination IP is the same. Which type of attack is MOST likely occurring?

Select an answer to reveal the explanation

4
Web Application and Injection Attacks

A security analyst notices that the web application returns different response times when a valid username is submitted versus an invalid one during login. Which type of vulnerability is likely being exploited?

Select an answer to reveal the explanation

5
Introduction to Ethical Hacking

A security analyst suspects that an attacker is scanning their network. They notice a large number of TCP SYN packets being sent to various ports on a single host, but no SYN-ACK responses are returned. Which type of scan is most likely being used?

Select an answer to reveal the explanation

6
Scanning Networks and Enumeration

During a penetration test, you discover that an internal web server responds to ICMP echo requests but does not respond to TCP SYN scans on port 80. However, when you browse to the server's IP using a browser, the web page loads successfully. What is the most likely reason for this behavior?

Select an answer to reveal the explanation

7
Vulnerability Analysis and System Hacking

A penetration tester discovers that a target Windows system has port 445 open and responds to SMB requests. Which tool should the tester use to enumerate users, shares, and OS information from this system?

Select an answer to reveal the explanation

8
Advanced Topics: Wireless, Cloud, IoT, Cryptography

A security analyst captures a large number of unique initialization vectors (IVs) from a wireless network using airodump-ng. Which attack are they MOST likely preparing to execute?

Select an answer to reveal the explanation

9
Footprinting and Reconnaissance

A penetration tester is performing a footprinting exercise on a target company. The tester wants to identify the network range and ISP of the target. Which of the following tools or techniques is MOST appropriate for this purpose?

Select an answer to reveal the explanation

10
Network and Web Application Attacks

During a penetration test, you notice that a web application accepts user input and displays it directly in the browser without sanitization. Which attack is most likely to succeed?

Select an answer to reveal the explanation

11
Wireless, IoT and Cloud Security

A security analyst discovers that an IoT device in a smart building is periodically sending small DNS queries to an external domain known for command-and-control activity. Which security control should be implemented to detect and block such traffic without disrupting legitimate operations?

Select an answer to reveal the explanation

12
Cryptography and Malware Analysis

A security analyst receives an alert about a suspicious file hash. The analyst wants to check if the file is known malware by querying an online database of malware signatures. Which tool should the analyst use?

Select an answer to reveal the explanation

13
Social Engineering and Physical Security

A penetration tester is assessing an organization's physical security. The tester wants to gain unauthorized access to a secured server room that uses a biometric fingerprint scanner. Which of the following techniques would be MOST effective for bypassing the biometric scanner?

Select an answer to reveal the explanation

Answer all 13 questions to see your domain score breakdown

CEH study strategy and exam preparation

A structured study plan dramatically increases your chances of passing CEH on the first attempt. The most effective approach combines reading the official EC-Council documentation or a study guide, watching video explanations for difficult concepts, and then reinforcing everything with daily practice questions.

We recommend the following weekly structure for CEH preparation:

Weeks 1–2

Cover each CEH domain systematically. Read the exam objectives, watch explanatory content, and do 10–20 practice questions per domain to test understanding as you go.

Weeks 3–4

Run full 50–60 question mixed sessions daily. Review every wrong answer in detail. Identify which domains are consistently scoring below 70% and revisit those study materials.

Weeks 5–6

Do 100–120 question timed sessions to simulate real exam conditions. Aim for consistent scores above 80% before booking your exam date. A score above 80% in practice typically translates to a passing CEH score.

On exam day, the CEH tests your ability to apply knowledge to realistic scenarios — not just recall definitions. This is why reading explanations and understanding the reasoning behind every answer matters more than simply grinding question volume. Use the high-count sessions (100, 120) in the final weeks as your confidence benchmark.

What to expect on the CEH exam

Questions

125

On the real exam

Time limit

240 min

1.9 min per question

Passing score

700/1000

Scaled scoring

The CEH exam uses a scaled scoring system — your raw score of correct answers is converted to a score out of 1000. A passing score of 700/1000 does not mean you need 70% of questions correct; the conversion accounts for question difficulty. Consistently scoring above 75–80% on practice tests puts you in a strong position to achieve 700/1000 on the real exam.

Scenario-based questions covering exam objectives with detailed answer explanations.

CEH practice test — frequently asked questions

Is this CEH practice test really free?

Yes. Courseiva provides free Certified Ethical Hacker CEH practice questions with explanations across the official exam domains. Start with a quick practice test, then continue with topic-based practice, mock exams, missed-question review, bookmarked questions, weak-topic recommendations, and readiness tracking. No account required. Create a free account to unlock per-domain analytics and progress tracking across every certification on the platform. Courseiva is free forever, supported by advertising.

How realistic are these CEH practice questions?

Every question is written against the official CEH exam blueprint published by EC-Council. Our questions follow the same wording style, scenario complexity, and answer structure as the actual exam. They are original questions — not brain dumps — so you learn the underlying concepts and reasoning, not just memorised answers. Candidates who study with brain dumps often pass but have no transferable knowledge; Courseiva questions make you genuinely competent.

How many CEH practice questions should I do per day?

Most candidates who pass CEH on their first attempt do 30–60 questions per day. Use the Quick 10 session for daily warm-ups when you are short on time. On study days, run a 50 or 60-question session to build stamina. Reserve 100 and 120-question sessions for the final two weeks when you want to simulate real exam conditions and benchmark your readiness.

What domains does the CEH exam cover?

The CEH covers 13 domains: Footprinting, Reconnaissance and Scanning, Enumeration and System Hacking, Malware, Social Engineering and Network Attacks, Web Application and Injection Attacks, Introduction to Ethical Hacking, Scanning Networks and Enumeration, Vulnerability Analysis and System Hacking, Advanced Topics: Wireless, Cloud, IoT, Cryptography, Footprinting and Reconnaissance, Network and Web Application Attacks, Wireless, IoT and Cloud Security, Cryptography and Malware Analysis, Social Engineering and Physical Security. Each domain carries a different weight, so allocate your study time accordingly. The highest-weighted domains — Footprinting, Reconnaissance and Scanning and Enumeration and System Hacking — should receive the most attention.

How is this different from exam dumps?

Exam dumps are memorised question-and-answer lists taken from actual exam papers, often obtained illegally and shared without EC-Council's authorisation. Using them violates your NDA and EC-Council's certification agreement, and can result in certification revocation. Courseiva questions are 100% original — written by certified engineers to test the same knowledge areas using new scenarios and wording. You learn the material, not just the answers.

Free forever · No credit card required

Unlock all 1,010+ CEH questions

Per-domain analytics, spaced repetition, daily challenges — and every other certification on the platform.

Sign Up Free

Free forever · Every certification included

CEH Exam Facts

Questions125
Duration240 min
Pass mark700/1000
Domains13
Full CEH exam overview →

Start Practising

CEH Practice Test 1Free CEH Practice Test 2CEH Practice Exam 3CEH Practice Questions 4CEH Practice Test 5Free CEH Practice Test 6Exam simulation

Related Exams

PT0-002CS0-003SY0-701200-201

Related Practice Tests

PT0-002

CompTIA PenTest+

CS0-003

CompTIA CySA+

SY0-701

CompTIA Security+

200-201

CyberOps Associate

Browse all certifications →