Courseiva

CEH · topic practice

Enumeration and System Hacking practice questions

Practise Certified Ethical Hacker CEH Enumeration and System Hacking practice questions — original exam-style scenarios with answer choices, explanations, and analysis of common mistakes.

Courseiva uses original exam-style practice questions designed for learning and revision. The goal is to understand the concepts, recognise exam patterns, and improve through explanations — not memorise copied exam dumps.

Reviewed byJohnson Ajibi· MSc IT Security
20 questionsDomain: Enumeration and System Hacking

What the exam tests

What to know about Enumeration and System Hacking

Enumeration and System Hacking questions test whether you can apply the concept in context, not just recognise a definition.

How the topic appears in realistic exam-style scenarios.

Which detail in the question changes the correct answer.

How to eliminate plausible but wrong options.

How to connect the question back to the wider exam objective.

Watch out for

Common Enumeration and System Hacking exam traps

  • Answering from memory before reading the full scenario.
  • Missing a constraint such as cost, availability, security, scope or command context.
  • Choosing a broad answer when the question asks for the most specific fix.
  • Ignoring why the wrong options are tempting.

Practice set

Enumeration and System Hacking questions

20 questions · select your answer, then reveal the explanation

During a penetration test, you gain access to a target system as a low-privileged user. Which of the following is the BEST next step according to the CEH system hacking methodology (CHPSET)?

During a penetration test, you successfully execute a privilege escalation attack by abusing a service running with SYSTEM privileges on a Windows machine. Which of the following techniques is MOST likely being used?

Which TWO of the following are valid SMTP enumeration commands that can be used to discover valid email addresses? (Select 2)

Which THREE of the following are password cracking techniques that can be used with Hashcat? (Select 3)

A system administrator wants to enumerate all users in an Active Directory domain. Which protocol and query technique should they use?

Which TWO tools can be used to enumerate SMB shares and users on a Windows target? (Choose two.)

Which THREE of the following are valid techniques in the system hacking methodology (CHPSET)? (Choose three.)

Which TWO tools are commonly used for enumerating NFS exports on a target system? (Select 2 correct answers)

Which of the following is the correct order of phases in the system hacking methodology known as CHPSET?

Which TWO tools are commonly used for password cracking against hashed passwords? (Select two.)

During a system hacking phase, a tester successfully gains access to a Windows machine and wants to hide a malicious executable. Which of the following techniques is MOST effective for hiding files from standard directory listings without using third-party tools?

Which THREE of the following are indicators that a system has been compromised by a rootkit? (Select 3)

Which TWO of the following are valid enumeration techniques used to identify user accounts on a system? (Select 2)

A penetration tester is tasked with performing privilege escalation on a Windows system. Which THREE of the following methods are commonly used for Windows privilege escalation? (Select 3)

An attacker gains access to a Linux web server as the 'www-data' user. They run `find / -perm -4000 -type f 2>/dev/null` and see that `/usr/bin/passwd` has the SUID bit set. Which privilege escalation technique is this command checking for?

Which TWO of the following are enumeration techniques used to gather information from Windows systems? (Select 2)

Which TWO of the following are password cracking techniques? (Select 2)

In the context of privilege escalation on Windows, what is token impersonation, and which tool is commonly used to exploit it?

Which TWO of the following are common methods used to hide files on a compromised system? (Select two.)

A security team is investigating a compromised Linux server. They suspect the attacker used privilege escalation via SUID binaries. Which THREE techniques should the team check as potential attack vectors? (Choose THREE.)

Free account

Track your progress over time

Create a free account to save your results and see which topics improve across sessions.

Focused Enumeration and System Hacking sessions

Start a Enumeration and System Hacking only practice session

Every question in these sessions is drawn from the Enumeration and System Hacking domain — nothing else.

Related practice questions

Related CEH topic practice pages

Move into related areas when this topic feels solid.

Frequently asked questions

What does the CEH exam test about Enumeration and System Hacking?
Enumeration and System Hacking questions test whether you can apply the concept in context, not just recognise a definition.
How should I use these practice questions?
Select your answer before revealing the explanation. Then read why each option is right or wrong — this active recall approach builds retention far faster than re-reading notes.
Can I practise just Enumeration and System Hacking questions in a focused session?
Yes — the session launcher on this page draws every question from the Enumeration and System Hacking domain. Use a 10-question session first to gauge your baseline, then move to 20 or 30 once the weak spots are clear.
Where can I practise other CEH topics?
Use the topic links above to move to related areas, or go back to the CEH question bank to see all topics.
Are these real exam questions or dumps?
These are original practice questions written to test the same concepts the CEH exam covers. They are not copied from any real exam or dump site.