A GAQM credential carries real weight with employers, and the GAQM Certified Ethical Hacker (CEH) exam is the step that earns it. Getcertkey makes that step shorter with 878 expert-prepared practice questions for the CEH-001 exam.
GAQM CEH-001 Exam Overview:
| Certification Vendor: | GAQM (Global Association for Quality Management) |
|---|---|
| Exam Name: | Certified Ethical Hacker (CEH v11) |
| Exam Number: | CEH-001 |
| Passing Score: | 70% |
| Certificate Validity Period: | 3 years |
| Real Exam Qty: | 125 |
| Exam Format: | Multiple Choice Questions |
| Exam Price: | $500–$700 USD |
| Available Languages: | Simplified Chinese, Japanese, Korean, English |
| Exam Duration: | 180–240 |
| Recommended Training: | GAQM Recommended Training |
| Exam Registration: | GAQM Official Registration |
| Sample Questions: | ![]() |
| Exam Way: | Online proctored via GAQM ProctorNow / Onsite at authorized testing centers |
| Pre Condition: | No mandatory prerequisites; recommended: basic networking, OS, and cybersecurity knowledge |
| Official Syllabus URL: | https://www.gaqm.org/certification/ceh-certified-ethical-hacker/ |
GAQM CEH-001 Exam Syllabus Topics:
| Section | Weight | Objectives |
|---|---|---|
| Topic 1: Sniffing | 5% | - Wired and wireless sniffing techniques - Packet sniffing concepts - Sniffing countermeasures |
| Topic 2: Evading IDS, Firewalls and Honeypots | 5% | - Evasion techniques - Detection and prevention - Firewall and IDS architecture |
| Topic 3: Enumeration | 10% | - Enumeration countermeasures - Network resource enumeration - NetBIOS, SNMP, LDAP enumeration |
| Topic 4: Cloud, IoT & Cryptography | 5% | - Encryption and cryptanalysis - Cloud security issues - IoT/OT attack vectors |
| Topic 5: Social Engineering | 6% | - Human-based and technical attacks - Social engineering defense - Phishing and impersonation |
| Topic 6: System Hacking | 10% | - Privilege escalation - Password cracking techniques - Covering tracks and maintaining access |
| Topic 7: Vulnerability Analysis | 8% | - Vulnerability scanning tools - Risk assessment and reporting - Vulnerability assessment concepts |
| Topic 8: Introduction to Ethical Hacking | 5% | - Penetration testing phases - Ethical hacking methodology - Information security controls and laws |
| Topic 9: Malware Threats | 6% | - Viruses, worms, trojans, ransomware - Malware analysis basics - Malware detection and defense |
| Topic 10: Scanning Networks | 12% | - Firewall/IDS evasion techniques - Port scanning and host discovery - OS fingerprinting and service detection |
| Topic 11: Session Hijacking | 4% | - Session hijacking techniques - Countermeasures - Application-level attacks |
| Topic 12: Hacking Web Servers & Applications | 12% | - SQL injection, XSS, CSRF - OWASP Top 10 risks - Web server vulnerabilities |
| Topic 13: Denial-of-Service | 4% | - Mitigation strategies - Attack tools and methodologies - DoS/DDoS attack types |
| Topic 14: Wireless & Mobile Hacking | 6% | - Mobile platform vulnerabilities - Wi-Fi security flaws - Defensive measures |
| Topic 15: Footprinting and Reconnaissance | 12% | - Reconnaissance tools and countermeasures - DNS, WHOIS, and network reconnaissance - Information gathering techniques |
CEH-001 Exam FAQs for 2026 Candidates
Which certification does the CEH-001 exam lead to?
The CEH-001 exam is the official GAQM (Global Association for Quality Management) exam behind the Certified Ethical Hacker (CEH) certification, validating the skills measured by the GAQM Certified Ethical Hacker (CEH) credential. It sits at the Professional level of the GAQM (Global Association for Quality Management) certification program.
How many questions are on the CEH-001 exam, and how much time do I get?
The CEH-001 exam contains 125 questions to be completed within 180–240. Before exam day, divide the available time by the question count to work out a comfortable per-question pace, and mark any item that eats into it so you can return later instead of getting stuck. Timed sessions in the Getcertkey test engines make that pacing automatic — run at least two full-length mock exams under the clock so time pressure never becomes the reason you drop points.
What score do I need to pass the CEH-001 exam, and what does it cost?
The passing score for the CEH-001 exam is 70%, and the official registration fee is $500–$700 USD. Retakes are not discounted — every new attempt means paying the full fee again — so it pays to measure yourself before you book. Work through the 878 practice questions on Getcertkey, sit a timed practice test, and schedule your exam only when your scores are consistently comfortable. That simple habit is the cheapest exam strategy there is.
Are there any prerequisites for the CEH-001 exam?
No mandatory prerequisites; recommended: basic networking, OS, and cybersecurity knowledge Requirements can change when GAQM (Global Association for Quality Management) revises its certification program, so confirm the current eligibility rules on the official exam page before you register.
How do I register for the CEH-001 exam?
You can book the GAQM Certified Ethical Hacker (CEH) exam through the official registration channels below:
As for delivery, the exam is offered in the following format: Online proctored via GAQM ProctorNow / Onsite at authorized testing centers. Choose the option that suits you best when you book your seat.
What official training is recommended for the CEH-001 exam?
GAQM (Global Association for Quality Management) recommends the following training resources for the GAQM Certified Ethical Hacker (CEH) exam:
Official courses build the foundation; the 878 practice questions from Getcertkey then show you how that knowledge is examined, so the two work best together.
Can I try the CEH-001 practice questions before I buy?
Yes. Getcertkey provides a free CEH-001 PDF demo so you can review the question style and answer quality before purchasing. Every purchase also includes 365 days of free updates — if GAQM revises the exam during that period, the updated material reaches you at no cost. Once the free-update year ends, you can extend your update service at a 50% discount.
What if I fail the CEH-001 exam, and how is my order delivered?
Every GAQM Certified Ethical Hacker (CEH) purchase on Getcertkey is covered by a 100% money-back guarantee with clear conditions: if you take the corresponding exam within 60 days of your purchase and do not pass, you can claim a full refund by submitting a scanned copy of your exam enrollment slip and your official score report as a PDF within two days of the exam date; claims are processed within seven days of submission. The guarantee does not apply to exams taken within three days of purchase, to material that was downloaded but never used in an exam attempt, or to free products and expired orders, and the candidate name must match the payer name. If you would rather not take a refund, you can instead exchange your purchase for two free exam preparation products of equal value and keep the update service on your original product.
Delivery is instant: your download is sent to your email within one minute of payment, with no limit on how many computers you may install the material on. If nothing arrives within two hours, check your spam folder and contact customer service for help.
What topics are covered in the CEH-001 exam?
The GAQM Certified Ethical Hacker (CEH) exam blueprint is organized into 15 domains. The first three are:
- Vulnerability Analysis — 8% of the exam
- Denial-of-Service — 4% of the exam
- Evading IDS, Firewalls and Honeypots — 5% of the exam
For the complete domain-by-domain breakdown, scroll up to the full exam topics outline above and use it to plan how you distribute your study time.
GAQM Certified Ethical Hacker (CEH) Sample Questions:
Question #1
Which of the following is an example of two factor authentication?
A. Digital Certificate and Hardware Token
B. Username and Password
C. Fingerprint and Smartcard ID
D. PIN Number and Birth Date
Question #2
You want to carry out session hijacking on a remote server. The server and the client are communicating via TCP after a successful TCP three way handshake. The server has just received packet #120 from the client. The client has a receive window of 200 and the server has a receive window of 250.
Within what range of sequence numbers should a packet, sent by the client fall in order to be accepted by the server?
A. 200-250
B. 120-370
C. 121-371
D. 121-231
E. 120-321
Question #3
What type of session hijacking attack is shown in the exhibit?
A. Token sniffing Attack
B. Session Fixation Attack
C. Cross-site scripting Attack
D. SQL Injection Attack
Question #4
Johnny is a member of the hacking group Orpheus1. He is currently working on breaking into the Department of Defense's front end Exchange Server. He was able to get into the server, located in a DMZ, by using an unused service account that had a very weak password that he was able to guess. Johnny wants to crack the administrator password, but does not have a lot of time to crack it. He wants to use a tool that already has the LM hashes computed for all possible permutations of the administrator password.
What tool would be best used to accomplish this?
A. RainbowTables
B. PSCrack
C. SMBCrack
D. SmurfCrack
Question #5
Ron has configured his network to provide strong perimeter security. As part of his network architecture, he has included a host that is fully exposed to attack. The system is on the public side of the demilitarized zone, unprotected by a firewall or filtering router. What would you call such a host?
A. Honeypot
B. DWZ host
C. DMZ host
D. Bastion Host
Solutions:
| Question #1 Correct Answer: B | Question #2 Correct Answer: C | Question #3 Correct Answer: B | Question #4 Correct Answer: A | Question #5 Correct Answer: A |


PDF Version Demo
789 Customer Reviews




Quality and ValueGetCertKey Practice Exams are written to the highest standards of technical accuracy, using only certified subject matter experts and published authors for development - no all study materials.
Tested and ApprovedWe are committed to the process of vendor and third party approvals. We believe professionals and executives alike deserve the confidence of quality coverage these authorizations provide.
Easy to PassIf you prepare for the exams using our GetCertKey testing engine, It is easy to succeed for all certifications in the first attempt. You don't have to deal with all dumps or any free torrent / rapidshare all stuff.
Try Before BuyGetCertKey offers free demo of each product. You can check out the interface, question quality and usability of our practice exams before you decide to buy.