ALL PASS, NO FAIL!

CEH v13 Module 20: Cryptography — Free Practice Questions with Explanations

Last updated September 2026 · 10 questions · Module 20 of 20

Cryptography: symmetric vs. asymmetric encryption, hashing, digital signatures, PKI, TLS, and hash attacks like rainbow tables. Exam focus: symmetric versus asymmetric, hash versus MAC, and where each breaks — AES modes, RSA key sizes, PKI trust chains, TLS handshakes, and why padding oracles and weak PRNGs defeat "secure" systems in exam scenarios.

⚠️ Important Disclaimer: These practice questions are original study material created by CEHStudy for educational purposes. They are NOT EC-Council exam questions and do NOT replicate the actual exam. CEHStudy is not affiliated with or endorsed by EC-Council.

Question 1: Symmetric encryption is characterized by:

Answer: A — AES, 3DES, RC4, and Blowfish are symmetric — fast but requiring secure key distribution; asymmetric solves the distribution problem.

Question 2: Which of the following is an asymmetric algorithm?

Answer: A — RSA (and ECC, Diffie-Hellman) use key pairs; AES/3DES/Blowfish are all symmetric block or stream ciphers.

Question 3: A cryptographic hash function such as SHA-256 is:

Answer: D — Small input changes alter the whole digest (avalanche effect) — hashes underpin integrity checks, password storage, and digital signatures.

Question 4: The core components of PKI include:

Answer: A — The CA signs X.509 certificates binding identities to public keys; the RA vets applicants; CRLs/OCSP keep revoked certs out of trust.

Question 5: In a digital signature, the sender:

Answer: B — The recipient verifies with the sender's public key — proving authenticity and integrity (and non-repudiation), without exposing the private key.

Question 6: MD5 and SHA-1 are considered unsuitable for new security designs because:

Answer: D — If two inputs can share a hash, forged files/certificates become possible — use SHA-2 (or BLAKE3) and memory-hard password hashing (bcrypt, Argon2).

Question 7: Steganography differs from cryptography in that it hides:

Answer: B — Cryptography says 'this is secret'; steganography says 'there is no secret at all' — often layered together in the field.

Question 8: HMAC (Hash-based Message Authentication Code) combines a hash function with a secret key to provide:

Answer: C — Anyone with the shared key can verify the tag; it's used in IPsec, TLS MACs, and API auth (e.g., AWS request signing).

Question 9: Perfect Forward Secrecy (e.g., via ECDHE) ensures that:

Answer: C — Ephemeral per-session keys mean bulk-captured (harvest-now-decrypt-later) data stays safe even if the server's long-term key later leaks.

Question 10: Shor's algorithm on a large quantum computer would break:

Answer: D — Grover's algorithm only halves symmetric key strength (mitigated by longer keys), but Shor breaks the math behind RSA/ECC/DH — hence NIST's post-quantum standardization.

Related Glossary Terms

Continue Your CEH v13 Prep

Frequently Asked Questions

How many CEH v13 Cryptography practice questions are on this page?

This page includes 10 original multiple-choice practice questions for CEH v13 Module 20 (Cryptography). Each question includes a detailed explanation of the correct answer and why the other options are wrong. The full CEHStudy question bank covers all 20 modules with 200+ questions — see the practice hub at https://cehstudy.com/ceh-practice-questions/ for every module.

What does CEH v13 Module 20 (Cryptography) cover?

Cryptography: symmetric vs. asymmetric encryption, hashing, digital signatures, PKI, TLS, and hash attacks like rainbow tables. These are the same topics tested under this module on the EC-Council 312-50 exam. Pair this quiz with our free Module 20 flashcards at https://cehstudy.com/ceh-v13/module-20/ to close any gaps.

Are these real CEH exam questions?

No. Every question on CEHStudy is original study material written for exam preparation. They match the style, difficulty, and domain coverage of the actual CEH v13 exam but are not leaked or reproduced EC-Council questions.

How should I use this Cryptography quiz for exam prep?

Answer all 10 questions without peeking at explanations, then click "Show My Score". Review every explanation — especially the ones you missed — and re-test those topics with our free CEH flashcards. Aim for 80% or higher on module quizzes before scheduling the exam.

Where do I find CEH Cryptography flashcards?

Our free flashcard app covers all 20 CEH v13 modules including Module 20 (Cryptography). Visit the CEH flashcards page at https://cehstudy.com/ or the Module 20 page at https://cehstudy.com/ceh-v13/module-20/. No account or sign-up required.