
GIAC Assessing and Auditing Wireless Networks
Domain 4Objective 1
Bluetooth Attacks GAWN Practice Questions (Page 2)
Part of the Bluetooth and BLE Security domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
7concepts
Questions 6–10
- 6
A security consultant is demonstrating Bluetooth vulnerabilities to a client. The consultant wants to show how an attacker can eavesdrop on a phone call made through a Bluetooth car kit. Which tool or technique would be MOST appropriate for this demonstration?
Select an answer first - 7
What is a key countermeasure to mitigate Bluetooth denial-of-service attacks?
Select an answer first - 8
A security analyst is categorizing Bluetooth attacks for a risk assessment. The analyst has identified an attack where an attacker sends a large number of pairing requests to a Bluetooth speaker, causing it to become unresponsive. How should this attack be classified in the Bluetooth attack taxonomy?
Select an answer first - 9
A penetration tester is assessing a legacy Bluetooth headset that uses PIN-based pairing. The tester has captured the pairing exchange between the headset and a user's phone. The tester wants to recover the link key to decrypt subsequent encrypted traffic. Which attack technique is MOST appropriate in this scenario?
Select an answer first - 10
What is the primary purpose of Bluetooth eavesdropping attacks?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.