Courseiva
Enumeration and System HackingmediumMultiple SelectObjective-mapped

CEH Enumeration and System Hacking Practice Question

Which TWO techniques are commonly used for privilege escalation on Linux systems? (Select two.)

⚠ Common exam trap

EC-Council often tests the distinction between Windows-specific and Linux-specific privilege escalation techniques, and the trap here is that candidates may confuse token impersonation or pass-the-hash as cross-platform methods, when they are strictly tied to Windows authentication and security models.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Kernel exploits

Kernel exploits (A) are a common privilege escalation technique on Linux because they target vulnerabilities in the kernel itself, allowing an attacker to execute arbitrary code with root privileges. By exploiting flaws such as buffer overflows or race conditions in kernel modules, an attacker can elevate from a low-privileged user to full root access. This is a classic method because the kernel runs with the highest system privileges, and a successful exploit bypasses all user-level security controls.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Kernel exploits

    Why this is correct

    Exploiting kernel vulnerabilities to gain root.

  • SUID/GUID abuse

    Why this is correct

    Exploiting binaries with SUID/GUID set.

  • Token impersonation

    Why it's wrong here

    Token impersonation is more common on Windows.

  • DLL hijacking

    Why it's wrong here

    DLL hijacking is a Windows technique.

  • Pass-the-hash

    Why it's wrong here

    Pass-the-hash is for lateral movement, not privilege escalation.

About these practice questions

One of 870 original CEH practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This CEH practice question is part of Courseiva's free EC-Council certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CEH exam.