Courseiva
Social Engineering and Physical SecuritymediumMultiple ChoiceObjective-mapped

CEH Social Engineering and Physical Security Practice Question

A penetration tester is assessing an organization's physical security. The tester wants to gain unauthorized access to a secured server room that uses a biometric fingerprint scanner. Which of the following techniques would be MOST effective for bypassing the biometric scanner?

⚠ Common exam trap

Test-takers frequently choose tailgating (Option D) as the easiest social engineering method, but the question specifically asks for bypassing the biometric scanner, not the door lock or human controls.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Using a gelatin mold of an authorized user's fingerprint

Gelatin molds can replicate the exact ridge and valley patterns of a fingerprint, which many capacitive and optical fingerprint scanners read. This bypasses the biometric authentication without requiring the user's cooperation, making it the most direct method to defeat the scanner itself.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Shoulder surfing the authorized user's fingerprint pattern

    Why it's wrong here

    Shoulder surfing involves visual observation, which is insufficient for capturing the intricate three-dimensional ridge patterns and minutiae points required to create a functional fingerprint replica. While one might observe the general shape or a user's interaction, the precise topographical data and unique characteristics needed for a successful spoofing attack cannot be obtained through mere visual inspection, rendering it an ineffective method for bypassing a biometric scanner.

  • Picking the lock on the server room door

    Why it's wrong here

    Lockpicking is a mechanical bypass technique specifically designed to manipulate the internal components of a traditional pin-tumbler or wafer-tumbler lock. This method directly targets the physical locking mechanism of a door, not the electronic or optical components of a biometric fingerprint scanner. Therefore, picking the server room door lock would only bypass a conventional lock, leaving the biometric access control system fully operational and uncompromised.

  • Using a gelatin mold of an authorized user's fingerprint

    Why this is correct

    Using a gelatin mold is a classic and often effective method for creating a spoofed fingerprint, as gelatin can accurately capture and replicate the unique ridge patterns and valleys of an authorized user's print. When pressed against a scanner, particularly older optical or capacitive types lacking advanced liveness detection, the gelatin replica can mimic the electrical or optical properties of a real finger. This allows the penetration tester to deceive the biometric system into granting access.

  • Tailgating behind an authorized employee

    Why it's wrong here

    Tailgating is a social engineering tactic where an unauthorized individual follows an authorized person through an access point without presenting their own credentials or interacting with the security system. This technique circumvents the biometric scanner entirely by exploiting human courtesy or inattentiveness, rather than technically bypassing or spoofing the scanner itself. It relies on the authorized employee holding the door open, effectively rendering the biometric control irrelevant for that specific entry.

About these practice questions

One of 870 original CEH practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CEH practice question is part of Courseiva's free EC-Council certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CEH exam.