
GIAC Assessing and Auditing Wireless Networks
The GIAC Assessing and Auditing Wireless Networks (GAWN) certification validates a technologist's readiness to assess the security of wireless networks. GAWN holders prove fluency in analyzing wireless networks and their security mechanisms, and expertise in the tools and techniques used to evaluate and exploit weaknesses. This certification is for auditors, penetration testers, and network security professionals who need to secure wireless environments against real-world attacks.
685 practice questions · Updated 2026-07-30
GAWN Curriculum
Every domain, objective, and concept the GAWN exam measures.
- Wireless Fundamentals
- Wireless Threats
- Wireless Sniffing Fundamentals
- Sniffing Hardware and Adapters
- Monitor Mode Configuration
- Sniffing Tools and Software
- Capturing and Analyzing Frames
- Channel Hopping and Scanning
- Packet Injection Techniques
- Encrypted Traffic Handling
- Legal and Ethical Considerations
- DoS Attack Types
- Attack Vectors
- Impact Assessment
- Mitigation Strategies
- Detection Techniques
- Rogue Network Definition
- Rogue Network Types
- Rogue Network Threats
- Rogue Network Detection
- Rogue Network Prevention
- Rogue Network Response
- Identify weak encryption protocols
- Explain vulnerabilities in WEP
- Describe WPA TKIP weaknesses
- Use tools for attacking weak encryption
- Perform a WEP key recovery attack
- Perform a WPA/WPA2 PSK attack
- Analyze captured traffic for encryption weaknesses
- Assess the impact of weak encryption
- WPA Overview
- WPA TKIP Encryption
- WPA Authentication Methods
- WPA2 Overview
- WPA2 AES-CCMP Encryption
- WPA2 Authentication Methods
- WPA3 Overview
- WPA3 SAE Authentication
- WPA3 Encryption Enhancements
- WPA3 Transition Modes
- Comparison of WPA Variants
- Wireless Client Attack Overview
- Rogue Access Point Attacks
- Evil Twin Attacks
- Deauthentication and Disassociation Attacks
- Client Probing and SSID Harvesting
- Honeypot and Captive Portal Attacks
- Man-in-the-Middle Attacks on Wireless Clients
- Client-Side Exploitation Techniques
- Wireless Client Isolation and Mitigation
- Hotspot Security Risks
- Hotspot Authentication Methods
- Captive Portal Analysis
- Hotspot Attack Techniques
- Hotspot Defense Mechanisms
- Legal and Ethical Considerations
- Air Gap Definition
- Bridging Techniques
- Attack Vectors
- Detection Methods
- Mitigation Strategies
- Bluetooth Attack Taxonomy
- Bluetooth Device Discovery and Reconnaissance
- Bluetooth Pairing and Bonding Vulnerabilities
- Bluetooth Eavesdropping and Traffic Sniffing
- Bluetooth Denial of Service (DoS) Attacks
- Bluetooth Malware and Hacking Tools
- Bluetooth Attack Countermeasures
- BLE Attack Surface
- BLE Sniffing
- BLE Spoofing
- BLE Eavesdropping
- BLE Man-in-the-Middle (MITM) Attacks
- BLE Replay Attacks
- BLE Denial of Service (DoS)
- BLE Fuzzing
- BLE Pairing Attacks
- BLE Key Management Attacks
- LF RFID Fundamentals
- LF RFID Attack Surface
- Eavesdropping Attacks
- Relay Attacks
- Cloning and Emulation
- Skimming Attacks
- Denial of Service (DoS) Attacks
- Countermeasures and Best Practices
- HF RFID Fundamentals
- HF RFID Standards and Protocols
- HF RFID Attack Surface
- Eavesdropping and Relay Attacks
- Cloning and Emulation
- Cryptographic Weaknesses
- Denial of Service (DoS) Attacks
- Countermeasures and Defenses
- NFC Fundamentals
- NFC Standards and Protocols
- NFC Tag Types
- NFC Communication Modes
- NFC Security Threats
- NFC Attack Vectors
- NFC Countermeasures
- NFC Testing Tools
- Fuzzing Fundamentals
- 802.11 Frame Structure
- Fuzzing Tools for 802.11
- Fuzzing Techniques
- Attack Vectors in 802.11
- Impact Assessment
- Mitigation Strategies
- SDR Fundamentals
- SDR Hardware and Software Tools
- Signal Capture and Analysis
- Protocol Reverse Engineering
- Attack Implementation with SDR
- Legal and Ethical Considerations
- Zigbee Protocol Fundamentals
- Zigbee Network Topologies
- Zigbee Frame Structure
- Zigbee Security Mechanisms
- Zigbee Attack Surfaces
- Zigbee Sniffing and Analysis
- Zigbee Exploitation Techniques
- Zigbee Security Assessment Methodology
Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for GAWN, so none is invented.