Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS)

GIAC Assessing and Auditing Wireless Networks

GAWN

The GIAC Assessing and Auditing Wireless Networks (GAWN) certification validates a technologist's readiness to assess the security of wireless networks. GAWN holders prove fluency in analyzing wireless networks and their security mechanisms, and expertise in the tools and techniques used to evaluate and exploit weaknesses. This certification is for auditors, penetration testers, and network security professionals who need to secure wireless environments against real-world attacks.

685 practice questions · Updated 2026-07-30

6Domains
17Objectives
123Concepts
685Questions

GAWN Curriculum

Every domain, objective, and concept the GAWN exam measures.

Wireless Basics

2 concepts · 33 questions
  1. Wireless Fundamentals
  2. Wireless Threats

Sniffing Wireless

9 concepts · 47 questions
  1. Wireless Sniffing Fundamentals
  2. Sniffing Hardware and Adapters
  3. Monitor Mode Configuration
  4. Sniffing Tools and Software
  5. Capturing and Analyzing Frames
  6. Channel Hopping and Scanning
  7. Packet Injection Techniques
  8. Encrypted Traffic Handling
  9. Legal and Ethical Considerations

DoS on Wireless Networks

5 concepts · 34 questions
  1. DoS Attack Types
  2. Attack Vectors
  3. Impact Assessment
  4. Mitigation Strategies
  5. Detection Techniques

Rogue Networks

6 concepts · 36 questions
  1. Rogue Network Definition
  2. Rogue Network Types
  3. Rogue Network Threats
  4. Rogue Network Detection
  5. Rogue Network Prevention
  6. Rogue Network Response

Attacking Weak Encryption

8 concepts · 47 questions
  1. Identify weak encryption protocols
  2. Explain vulnerabilities in WEP
  3. Describe WPA TKIP weaknesses
  4. Use tools for attacking weak encryption
  5. Perform a WEP key recovery attack
  6. Perform a WPA/WPA2 PSK attack
  7. Analyze captured traffic for encryption weaknesses
  8. Assess the impact of weak encryption

WPA Variants

11 concepts · 48 questions
  1. WPA Overview
  2. WPA TKIP Encryption
  3. WPA Authentication Methods
  4. WPA2 Overview
  5. WPA2 AES-CCMP Encryption
  6. WPA2 Authentication Methods
  7. WPA3 Overview
  8. WPA3 SAE Authentication
  9. WPA3 Encryption Enhancements
  10. WPA3 Transition Modes
  11. Comparison of WPA Variants

Wireless Client Attacks

9 concepts · 39 questions
  1. Wireless Client Attack Overview
  2. Rogue Access Point Attacks
  3. Evil Twin Attacks
  4. Deauthentication and Disassociation Attacks
  5. Client Probing and SSID Harvesting
  6. Honeypot and Captive Portal Attacks
  7. Man-in-the-Middle Attacks on Wireless Clients
  8. Client-Side Exploitation Techniques
  9. Wireless Client Isolation and Mitigation

Hotspots

6 concepts · 31 questions
  1. Hotspot Security Risks
  2. Hotspot Authentication Methods
  3. Captive Portal Analysis
  4. Hotspot Attack Techniques
  5. Hotspot Defense Mechanisms
  6. Legal and Ethical Considerations

Bridging the Air Gap

5 concepts · 33 questions
  1. Air Gap Definition
  2. Bridging Techniques
  3. Attack Vectors
  4. Detection Methods
  5. Mitigation Strategies

Bluetooth Attacks

7 concepts · 38 questions
  1. Bluetooth Attack Taxonomy
  2. Bluetooth Device Discovery and Reconnaissance
  3. Bluetooth Pairing and Bonding Vulnerabilities
  4. Bluetooth Eavesdropping and Traffic Sniffing
  5. Bluetooth Denial of Service (DoS) Attacks
  6. Bluetooth Malware and Hacking Tools
  7. Bluetooth Attack Countermeasures

Bluetooth Low Energy Attacks

10 concepts · 56 questions
  1. BLE Attack Surface
  2. BLE Sniffing
  3. BLE Spoofing
  4. BLE Eavesdropping
  5. BLE Man-in-the-Middle (MITM) Attacks
  6. BLE Replay Attacks
  7. BLE Denial of Service (DoS)
  8. BLE Fuzzing
  9. BLE Pairing Attacks
  10. BLE Key Management Attacks

Low-Frequency RFID Attacks

8 concepts · 34 questions
  1. LF RFID Fundamentals
  2. LF RFID Attack Surface
  3. Eavesdropping Attacks
  4. Relay Attacks
  5. Cloning and Emulation
  6. Skimming Attacks
  7. Denial of Service (DoS) Attacks
  8. Countermeasures and Best Practices

High-Frequency RFID Attacks

8 concepts · 43 questions
  1. HF RFID Fundamentals
  2. HF RFID Standards and Protocols
  3. HF RFID Attack Surface
  4. Eavesdropping and Relay Attacks
  5. Cloning and Emulation
  6. Cryptographic Weaknesses
  7. Denial of Service (DoS) Attacks
  8. Countermeasures and Defenses

NFC

8 concepts · 38 questions
  1. NFC Fundamentals
  2. NFC Standards and Protocols
  3. NFC Tag Types
  4. NFC Communication Modes
  5. NFC Security Threats
  6. NFC Attack Vectors
  7. NFC Countermeasures
  8. NFC Testing Tools

802.11 Fuzzing Attacks

7 concepts · 45 questions
  1. Fuzzing Fundamentals
  2. 802.11 Frame Structure
  3. Fuzzing Tools for 802.11
  4. Fuzzing Techniques
  5. Attack Vectors in 802.11
  6. Impact Assessment
  7. Mitigation Strategies

Practical SDR Attacks

6 concepts · 35 questions
  1. SDR Fundamentals
  2. SDR Hardware and Software Tools
  3. Signal Capture and Analysis
  4. Protocol Reverse Engineering
  5. Attack Implementation with SDR
  6. Legal and Ethical Considerations

Zigbee

8 concepts · 48 questions
  1. Zigbee Protocol Fundamentals
  2. Zigbee Network Topologies
  3. Zigbee Frame Structure
  4. Zigbee Security Mechanisms
  5. Zigbee Attack Surfaces
  6. Zigbee Sniffing and Analysis
  7. Zigbee Exploitation Techniques
  8. Zigbee Security Assessment Methodology
Ready to practice?Test your knowledge with exam-style questions or take an intelligent quiz tailored to your level.

Percentages reflect share of the current practice bank, not official exam weightings — no structured per-skill weight is published for GAWN, so none is invented.