
GIAC Assessing and Auditing Wireless Networks
Domain 4Objective 1
Bluetooth Attacks GAWN Practice Questions (Page 4)
Part of the Bluetooth and BLE Security domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
7concepts
Questions 16–20
- 16
What is the primary goal of a Bluetooth denial-of-service (DoS) attack?
Select an answer first - 17
A security analyst is investigating a potential Bluetooth data leak from a wireless headset. The analyst has an Ubertooth One and has captured traffic from the headset's piconet. The analyst has also recovered the link key from a previous assessment. What is the NEXT step to decrypt the captured traffic?
Select an answer first - 18
Which of the following is a common Bluetooth denial-of-service attack that sends oversized packets to cause a buffer overflow?
Select an answer first - 19
What is the primary purpose of using sdptool in Bluetooth reconnaissance?
Select an answer first - 20
A company is deploying Bluetooth beacons for indoor navigation. The beacons are battery-powered and have limited processing capabilities. The security team wants to mitigate the risk of an attacker spoofing the beacons to send false navigation data. Which control would be MOST effective while considering the beacons' constraints?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.