Skip to content
ScopefileGet the app

Engagement brief · CEH v13 · 312-50

CEH prep, sorted by what the exam actually weighs

The CEH certification is EC-Council's Certified Ethical Hacker credential, and you earn it by passing exam 312-50: 125 multiple-choice questions in four hours. Scopefile sorts that exam by where the points sit, so your hours go to the domains that carry the most and the light ones get a short, late pass.

Exam domains, weighted by share

Tile size follows the domain's share in EC-Council's blueprint v5.0. Each tile opens the module files inside it.

  1. Domain 16%

    Information Security and Ethical Hacking Overview

  2. Domain 217%

    Reconnaissance Techniques

  3. Domain 315%

    System Hacking Phases and Attack Techniques

  4. Domain 424%

    Network and Perimeter Hacking

  5. Domain 514%

    Web Application Hacking

  6. Domain 65%

    Wireless Network Hacking

  7. Domain 710%

    Mobile Platform, IoT, and OT Hacking

  8. Domain 85%

    Cloud Computing

  9. Domain 95%

    Cryptography

How the nine domains split the exam

Blueprint v5.0 (EC-Council, effective April 2024, checked Oct 11, 2026) splits the exam into nine domains. Three of them carry 56% between them: Network and Perimeter Hacking at 24%, Reconnaissance Techniques at 17% and System Hacking Phases and Attack Techniques at 15%. Add Web Application Hacking at 14% and four domains hold seven points in every ten.

One layer down, the picture flattens. The nine domains are built from 20 modules, and the blueprint gives each module six or seven questions. Network and Perimeter Hacking is heavy because it bundles five modules (sniffing, social engineering, denial-of-service, session hijacking, and evading IDS, firewalls and honeypots), not because any one of them is large. So the real triage happens inside each module: learn the distinctions each topic rests on, and skim tool catalogs and history.

What goes last

Wireless Network Hacking, Cloud Computing and Cryptography are 5% each. Park them for the final weeks, where short recall sessions are all they need. The overview domain (6%) is mostly vocabulary: read it once early, because every later module borrows its terms, then come back for the laws and frameworks near exam day.

Heavy domains first, light domains last, nothing written off.

Which tool to open, and when

The five study tools on this site
ToolOpen it whenHold off when
CEH study guideYou need the module map and an order to work through itNever; it is the starting point
CEH practice testYou have finished a module and want to find its gaps, one domain at a timeYou have not read the module yet; answers before reading measure luck
Timed CEH mock examSeveral domains hold up on their own and you need a mixed run under the clockYou are still learning the heavy domains
CEH flashcardsA pair of terms keeps swapping places in your headYou want scenario practice
CEH study planYou have an exam date and want the weeks laid outYou have no date yet

Field kit

The certification in brief

What is the CEH certification?

Certified Ethical Hacker (CEH) is EC-Council's certification for people who test systems with the owner's permission. You earn it by passing exam 312-50, a 125-question multiple-choice exam with a four-hour limit; the current version is CEH v13 (EC-Council, checked Oct 11, 2026). To sit it you need either EC-Council's own training or two years of information-security work experience plus an approved eligibility application. The CEH requirements page walks through both routes.

Is Scopefile run by EC-Council?

No. Scopefile is an independent study site. EC-Council does not write, review or endorse anything on it, and the practice questions are written for practice, never recalled from a live exam. The about page says who runs it.

Which version of the exam do these pages follow?

CEH v13, which EC-Council lists as current, with domain weights from blueprint v5.0 (effective April 2024). EC-Council had announced no v14 when this was checked on Oct 11, 2026; the CEH v13 page tracks that.

Sources