EC-COUNCIL · 212-82

EC-Council 212-82 CCT Exam Practice Questions

125 questionsInstant PDF downloadUpdated September 2026

US$39

Try 10 questions free

Card, Apple Pay or Google Pay. Your PDF is sent by email as soon as you check out.

Pass or your money backFail the exam after using this pack and we refund it. How the guarantee works
Category:
TRY BEFORE YOU BUY

Three of the 125 questions in this pack

Question 1

Thomas, an employee of an organization, is restricted to access specific websites from his office system. He is trying to obtain admin credentials to remove the restrictions. While waiting for an opportunity, he sniffed communication between the administrator and an application server to retrieve the admin credentials.

Identify the type of attack performed by Thomas in the above scenario.

  1. Vishing
  2. Eavesdropping
  3. Phishing
  4. Dumpster diving
Show answer and explanation

Correct answer: B. Eavesdropping

Eavesdropping is the unauthorized interception and listening to private communications. Thomas sniffed network communication between the administrator and application server to capture admin credentials, which is a classic eavesdropping attack. The attacker passively monitored traffic without the knowledge or consent of the communicating parties to obtain sensitive information.

Why the other options are wrong

  • A. Vishing is a voice-based social engineering attack conducted over the telephone, not network sniffing.
  • C. Phishing involves deceptive emails or messages attempting to trick users into revealing credentials, not network traffic interception.
  • D. Dumpster diving is physical retrieval of discarded materials containing sensitive information, not network-based eavesdropping.

Question 2

Kayden successfully cracked the final round of interview at an organization. After few days, he received his offer letter through an official company email address. The email stated that the selected candidate should respond within a specified time. Kayden accepted the opportunity and provided e-signature on the offer letter, then replied to the same email address. The company validated the e-signature and added his details to their database. Here, Kayden could not deny company's message, and company could not deny Kayden's signature.

Which of the following information security elements was described in the above scenario?

  1. Availability
  2. Non-repudiation
  3. Integrity
  4. Confidentiality
Show answer and explanation

Correct answer: B. Non-repudiation

Non-repudiation ensures that neither party can deny their involvement in a transaction. In this scenario, Kayden cannot deny sending his e-signature and acceptance because it was validated and recorded, and the company cannot deny sending the offer letter because it came from an official email address that was validated. This mutual inability to deny participation is the defining characteristic of non-repudiation.

Why the other options are wrong

  • A. Availability refers to ensuring data and services are accessible when needed, not relevant to this authentication scenario.
  • C. Integrity ensures data is not altered or corrupted, but the focus here is on proving authenticity of actions, not data modification prevention.
  • D. Confidentiality protects information from unauthorized disclosure, which is not the primary concern in this offer letter exchange.

Question 3

Sam, a software engineer, visited an organization to give a demonstration on a software tool that helps in business development. The administrator at the organization created a least privileged account on a system and allocated that system to Sam for the demonstration. Using this account, Sam can only access the files that are required for the demonstration and cannot open any other file in the system.

Which of the following type of accounts the organization has given to Sam in the above scenario?

  1. Service account
  2. Guest account
  3. User account
  4. Administrator account
Show answer and explanation

Correct answer: B. Guest account

A guest account is a temporary account created for temporary or external users with minimal privileges. The organization created a least privileged account for Sam, an external visitor, allowing access only to demonstration-related files. This temporary, restricted access profile is characteristic of a guest account designed for short-term external use.

Why the other options are wrong

  • A. Service accounts are created for running background services and applications, not for human users attending demonstrations.
  • C. User accounts are standard employee accounts typically with broader permissions than a least privileged demonstration account.
  • D. Administrator accounts have full system privileges, directly contradicting the least privileged access described.

See all 10 free questions Get the full pack, US$39

125 practice questions for EC-Council Certified Cybersecurity Technician (CCT), exam 212-82, with full explanations.

Every question comes with the correct answer, a clear explanation, and a note on why each other option is wrong. Mapped to the current CCT exam blueprint.

  • 125 questions mapped to the CCT exam blueprint
  • Answers and explanations for every question, including the wrong options
  • A questions-only PDF for timed practice runs
  • Instant delivery by email the moment you check out
  • Free monthly updates for as long as the exam is live
  • Pass or your money back

A failed 212-82 attempt costs another US$199, plus the weeks it takes to get ready again. This pack is US$39, paid once, and refunded if you fail anyway.

Try 10 questions free before you buy.

Last updated September 2026 · 125 questions

What makes the CCT hard

CCT is EC-Council’s entry-level technician exam, and it is unusual for the level because it is partly practical. Of the 60 questions, 50 are multiple choice and 10 are hands-on tasks performed in a live lab environment, worth double marks each, so the practical items decide the exam.

The blueprint pulls from four disciplines, network defence, ethical hacking, forensics and security operations, at a foundational depth. Network Security Controls is the biggest domain at 23%, covering administrative, physical and technical controls plus assessment techniques and tools, which is where the lab questions on firewalls, IDS, VPNs and scanners tend to sit.

Network Monitoring and Analysis at 16% and Incident and Risk Management at 13% follow, then a spread of smaller domains across threats, wireless, data security, application security and cloud, and network security fundamentals. The practical questions expect a candidate to actually read a firewall rule, analyse a packet capture or find an artefact, so lab time matters more here than for any other EC-Council exam at this level.

About the exam

212-82 (Certified Cybersecurity Technician) earns the EC-Council CCT certification. It covers information security threats and attacks, network security fundamentals, network security controls, application security and cloud computing, wireless, mobile, IoT and OT security, data security and cryptography, network monitoring and analysis, and incident and risk management. There are no prerequisites.

Exam domains

  • Information Security Threats and Attacks: 11%
  • Network Security: 7%
  • Network Security Controls: 23%
  • Application Security and Cloud Computing: 9%
  • Wireless Device Security: 11%
  • Data Security: 10%
  • Network Monitoring and Analysis: 16%
  • Incident and Risk Management: 13%

60 questions (50 multiple choice and 10 hands-on practical), 180 minutes, passing score 70%, US$199 per attempt, remote proctored through the ECC Exam Portal, certification valid for three years with EC-Council continuing education.

Reviews

There are no reviews yet.

Only logged in customers who have purchased this product may leave a review.

Questions before you buy

What do I get when I buy the EC-Council 212-82 CCT pack?

125 practice questions as a PDF, each with the correct answer, a full explanation and a note on why the other options are wrong, plus a separate questions-only PDF for timed practice.

How quickly do I receive it?

Straight away. The full PDF and a questions-only copy are emailed to you the moment your payment goes through, and the same links are on your order page.

Is there a free sample?

Yes. Ten questions from this pack, with answers and explanations, are free on this page and as a PDF, so you can judge the quality before you pay.

Are updates included?

Yes. The pack is updated every month for as long as the exam is live, and updates are free for everyone who has bought it.

What if I fail the exam?

We refund the pack. Sit the exam 7 to 30 days after buying, then send your official score report within 7 days of the exam date, as set out in the refund policy.

Can I share it with colleagues?

Each purchase is licensed to one person. For a team, school or training organisation, email support@certstash.com for a licence that fits.