EC-Council
Certified Ethical Hacker
CEH v13
Complete Exam Guide 2026
All 20 Modules Covered | 30 Practice Q&A | Tools Cheat Sheet Included
125 Questions | 4 Hours | Passing Score: 70% | Exam Code: 312-50
By MR Abdellah
CyberSecurity | 2026 Edition
Page 1 | By MR Abdellah | AI Simplified Now
, CEH v13 — Certified Ethical Hacker Complete Exam Guide 2026
About This Guide
This guide prepares you for the EC-Council Certified Ethical Hacker (CEH) v13 exam (312-50). CEH is
the world's most recognized ethical hacking certification. This guide is written in plain language,
covering all 20 modules across the 9 core domains tested on the exam.
What is included:
• All 20 CEH v13 modules explained clearly with key concepts and attack methods
• The ethical hacking methodology — the 5 phases used on the exam
• Essential hacking tools list with what each tool does
• 30 exam-style practice questions with full answers and explanations
• Quick-reference cheat sheet: tools, attack types, and key terms
• AI-powered hacking section — new in CEH v13
Exam Overview: Exam code: 312-50 | 125 multiple-choice questions | 4 hours | Passing score: ~70%
(variable) | Available via Pearson VUE or EC-Council portal
Page 2 | By MR Abdellah | AI Simplified Now
, CEH v13 — Certified Ethical Hacker Complete Exam Guide 2026
All 20 CEH v13 Modules at a Glance
CEH v13 is organized into 20 modules. The table below shows each module, its approximate exam
weight, and what it covers.
# Module Weight Focus Area
01 Introduction to Ethical Hacking 6% Concepts, cyber laws, pen test types, hacker
classes
02 Footprinting & Reconnaissance 15% Passive/active info gathering, OSINT, Google
hacking
03 Scanning Networks 10% Port scanning, OS fingerprinting, vulnerability
scanning
04 Enumeration 10% NetBIOS, SNMP, LDAP, DNS, SMTP
enumeration
05 Vulnerability Analysis 5% CVE, CVSS, scanning tools, vulnerability lifecycle
06 System Hacking 15% Password cracking, privilege escalation, covering
tracks
07 Malware Threats 10% Viruses, worms, trojans, ransomware, APTs
08 Sniffing 10% Passive/active sniffing, ARP poisoning,
wiretapping
09 Social Engineering 8% Phishing, pretexting, impersonation, insider
threats
10 Denial-of-Service 5% DoS/DDoS, botnets, volumetric vs protocol
attacks
11 Session Hijacking 5% TCP hijacking, cookie theft, MITM, replay attacks
12 Evading IDS, Firewalls & Honeypots 7% Evasion techniques, obfuscation, fragmentation
13 Hacking Web Servers 5% Banner grabbing, patch management, web server
attacks
14 Hacking Web Applications 10% OWASP Top 10, XSS, CSRF, authentication
flaws
15 SQL Injection 7% In-band, inferential, out-of-band SQLi, tools
16 Hacking Wireless Networks 5% WEP/WPA cracking, rogue APs, evil twin attacks
17 Hacking Mobile Platforms 4% Android/iOS vulnerabilities, MDM bypass, app
threats
18 IoT and OT Hacking 3% IoT attack surface, SCADA, industrial systems
19 Cloud Computing 4% Cloud misconfigurations, container attacks,
serverless
20 Cryptography — Encryption, PKI, steganography, cryptanalysis
Study Priority: Modules 02, 06 (15% each) and 03, 04, 07, 08, 14 (10% each) make up ~75% of the
exam. Master these first.
Page 3 | By MR Abdellah | AI Simplified Now