Exam 312-50v11 Topic 7 Question 462 Discussion
Actual exam question for EC-COUNCIL's 312-50v11 exam
Question #: 462
Topic #: 7
Question #: 462
Topic #: 7
The following is an entry captured by a network IDS. You are assigned the task of analyzing this entry. You notice the value 0x90, which is the most common NOOP instruction for the Intel processor. You figure that the attacker is attempting a buffer overflow attack.
You also notice "/bin/sh" in the ASCII part of the output.
As an analyst what would you conclude about the attack?

You also notice "/bin/sh" in the ASCII part of the output.
As an analyst what would you conclude about the attack?

Suggested Answer: C Vote an answer
by Donald at Nov 25, 2025, 06:38 PM
0
0
0
10
Comments
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Report Comment
Commenting
You can sign-up / login (it's free).