
GIAC Exploit Researcher and Advanced Penetration Tester - GXPN Exam Questions
QUESTION NO: 1
How can an exploit writer overcome Address Space Layout Randomization (ASLR) while creating a stack smashing attack?
Response:
How can an exploit writer overcome Address Space Layout Randomization (ASLR) while creating a stack smashing attack?
Response:
Correct Answer: D
QUESTION NO: 2
Which of the following mitigations is designed to prevent stack smashing attacks?
Response:
Which of the following mitigations is designed to prevent stack smashing attacks?
Response:
Correct Answer: B
QUESTION NO: 3
You are tasked with fuzzing a proprietary protocol to identify potential flaws. Which tool or framework would you use, and what would be your first step in the fuzzing process?
Response:
You are tasked with fuzzing a proprietary protocol to identify potential flaws. Which tool or framework would you use, and what would be your first step in the fuzzing process?
Response:
Correct Answer: C
QUESTION NO: 4
Which of the following is a limitation of fuzzing techniques?
Response:
Which of the following is a limitation of fuzzing techniques?
Response:
Correct Answer: C
QUESTION NO: 5
During a penetration test, you want to redirect network traffic through your machine without disrupting services. Which of the following methods would you use?
Response:
During a penetration test, you want to redirect network traffic through your machine without disrupting services. Which of the following methods would you use?
Response:
Correct Answer: D
QUESTION NO: 6
In client environment exploitation, what role does the exploitation of third-party applications play?
Response:
In client environment exploitation, what role does the exploitation of third-party applications play?
Response:
Correct Answer: C
QUESTION NO: 7
When writing shellcode for Windows, what functionality must be correctly implemented to ensure stability?
Response:
When writing shellcode for Windows, what functionality must be correctly implemented to ensure stability?
Response:
Correct Answer: D
QUESTION NO: 8
In the context of network manipulation, what is the primary goal of privilege escalation attacks?
Response:
In the context of network manipulation, what is the primary goal of privilege escalation attacks?
Response:
Correct Answer: B
QUESTION NO: 9
Which of the following is a key requirement when writing shellcode for Linux systems?
Response:
Which of the following is a key requirement when writing shellcode for Linux systems?
Response:
Correct Answer: B




