Success Guide for Becoming a Genuine Certified Ethical Hacker(#CEHv11) from 99.2% Score Holder
@Puneet Tambi @MohitSarin @ec-council

Success Guide for Becoming a Genuine Certified Ethical Hacker(#CEHv11) from 99.2% Score Holder

Who is a Certified Ethical Hacker?

To beat a hacker, you need to think like one!”

Certified Ethical Hacker is the one who knows how to identify vulnerabilities in target systems using the same knowledge that of a malicious hacker. An ethical hacker does the job of assessing the security posture of an organization in a lawful and legitimate manner.

The Certified Ethical Hacker (#CEH) is a certification program for an information security professional, also referred to as a white-hat hacker, who systematically attempts to inspect network infrastructure with the consent of its owner to find security vulnerabilities which a malicious hacker could potentially exploit.

The Main Objective of CEH Certification's program is to test & validate your Hacker Mindset for making you a white-hat hacker,rather than giving a certification of an exam passing.

The CEH program helps you assess the security posture of an organization by identifying vulnerabilities in the network and system infrastructure to determine if unauthorized access is possible.

The Certified Ethical Hacker program seem to be the most comprehensive Ethical Hacking program in the world. It is the very first program for you to enter towards Vulnerability Assessment and Penetration Testing (VAPT) track.

To obtain the Certified Ethical Hacker (#CEHv11) certification, one must get score of 70–90%, depending on which set of the exam one receive. However as per EC Council it depends on the difficulty level. Refer EC-Council FAQs

The CEHv11 certification exam will contain 125 multiple-choice questions on following Domains:

  • Information Security and Ethical Hacking Overview : 8
  • Reconnaissance Techniques : 26
  • System Hacking Phases and Attack Techniques : 21
  • Network and Perimeter Hacking : 18
  • Web Application Hacking : 20
  • Wireless Network Hacking : 8
  • Mobile Platform, IoT, and OT Hacking : 10
  • Cloud Computing : 7
  • Cryptography : 7

You can find all of the objectives in the CEH exam blueprint v4.0

To pass and obtain the CEH, you need to have a comprehensive strategy both before and on exam day.

Plan your Target to Hack in Phases -

Every Hack is different and should be tailored to your learning style, but here are some recommendations:

Schedule your Certified Ethical Hacker (CEHv11 : 312-50) exam

You can schedule the exam through through Pearson/VUE or directly from EC-Council’s online exam platform i.e. ECC EXAM CENTER & REMOTE PROCTORING SERVICE'S.The EC-Council User Friendly Guide can be referred for the Exam Booking,Remote proctoring and taking the actual Exam.

Now Think of the appointment date as the endpoint of your study plan and work backwards. But don’t worry if you need to extend your study; you can reschedule for 72 Hours before your Exam Start. Just make sure you reschedule at least a week before the appointment, or you may forfeit your Exam Voucher. You can also contact the EC-Council Customer Care for any Queries.

Organize your study/practice plan around the exam objectives/CEH Domains.

You can organize your study/practice plan,the way you love to manage your time, but remember, you need to relate it back to domain mastery. Don’t be concerned about the official course module order. You’ll probably need to skip around in the beginning until you’re ready for a more holistic review.

Play with the Lab and tools.

You can launch i-labs, look up user guides, and read security blogs or you can build your own LAB. But don’t just follow the steps given in Lab Manuals to do something blindly. See what happens if you use a different command-line switch, or explore if you can use the tool differently. Again, the more thoroughly you practice a tool, the more likely you’re going to remember it.

Drill and research,Don't do Cramming

Run through the QBank as much as you can, reading the explanations in detail and looking up the references for more information though your googling hacks and EC-Council Course ware. In the beginning, follow the rabbit holes until you know everything about the topic and could answer any number of additional questions about it. It’s very likely you’ll get a few questions on the live exam that cover the same ground.

Start Reviewing and Practice Mock

Start reviewing at least one/two week before exam day and Practice Mock Exams to Identify Residual Weak Spots and Keep Attempting the Mock Exam till you are able to answer every question based on your understanding and knowledge with due explanation Then repeat the attempt of Mock Exam's in Sequence/Alternate day so you don't remember the answer's rather try to be remembering the concept behind each question for correct answer so that you are able to answer the similar topic based questions easily

The Mock Practice Test can be attempted at following links :

Disclaimer : These 3rd Party links have been posted for Practice purpose of CEH Aspirant only and Many of the answers might be incorrect in practice Test Set but these are for your practice, so use your Hacking skills to get the correct answer with explanation that what should be the correct answer and why ?

You can also Check Your Readiness from Official EC-Council CEH-Assesment :

Give yourself plenty of time, Be calm & Cool !

If you’re traveling to a testing center, give yourself at least a couple of hours buffer. If you get there too early, then you can spend any extra time reviewing. If you’re using remote proctoring at home, then make sure your computer & Internet meets all prerequisites days before. Eliminate any reasons for panic in the precious moments before the exam.

Be methodical and focused to Reverse Engineer the Exam !

You've been studying to be a hacker for past few months, so think of the exam as the system to hack.

Read the questions carefully. Don’t be tempted to jump to an early conclusion. Make sure that you know exactly what each question is asking. so There’s no reason to read each question straight through. Read the last sentence, or better, the last option, first. Hone in on the vulnerable keywords and exploit them. Take on the right mindset—you’ll be surprised how little time is wasted with anxiety.

Watch the time, but remember, you can mark questions and go back to them. Get the easy ones out of the way first and look for best-guess clues on the hard ones. There’s no penalty for getting an answer wrong, but if you leave one blank, you’ll definitely regret it. So Don’t leave any unanswered questions. Unanswered questions may get scored against you.

Know which is the case and learn how to quickly predict how much time you really need to spend on the question.

You can attempt all the question you feel correct and others you can mark for review which are confusing or your are unsure and then during the review you can answer them.

During the exam, you might find the terms you didn’t study. So When answering multiple-choice questions about which you’re unsure, use a process of elimination to get rid of the obviously incorrect answers first. Doing so will improve your odds if you need to make a methodical guess. As well as leverage your strengths of hacking mindset and pull out the keywords and concepts you did. Many times, the concept is more important than the exact term or context. Other times, the context is critical, and the terms are just honeypots.

There may be questions with multiple correct responses. When there is more than one correct answer, a message at the bottom of the screen will prompt you either to “Choose two” or “Choose all that apply.” Be sure to read the messages displayed to know how many correct answers you must choose.

Just before submitting the exam do review all the question & it's answers marked by you and validate at least 2-3 times (based on the time left with you) with due explanation of why you are answering it as correct one. This can help you to reduce your errors in answers. Key to get 100% Marks.

Remember, this exam is the culmination of your experience,Practice and study so far. The exam is not nearly as difficult as the time and energy you’ve already put forth till now.

So Be methodical and focused, like a good penetration tester, and you should have no problem passing the exam by using your Hacker Mindset which you must have groomed in past few months for becoming a genuine Certified Ethical Hacker!

#CertifiedEthicalHacker #EthicalHacker #EthicalHacking #Successguide #ECCOUNCIL #CEHv10 #CEHv11

Mohit Sarin

Security+ | CEH | Expert in Implementing Enterprise Tolling Back Office Solutions, Web/Mobile Applications, e-Commerce Solutions, and People/Stakeholder Management | Cyber Security Enthusiast

4 年

Great job Puneet! Nice article.

Richa Dwivedi

Head of Strategy & Change Management

4 年

Very well articulated and extremely helpful! Thanks a ton Puneet !

要查看或添加评论,请登录

Puneet Tambi的更多文章

社区洞察

其他会员也浏览了