
GIAC Assessing and Auditing Wireless Networks
Domain 4Objective 2
Bluetooth Low Energy Attacks GAWN Practice Questions (Page 11)
Part of the Bluetooth and BLE Security domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 56 practice questions to prepare you well beyond it. (estimate)
56questions here
12free pages
10concepts
Questions 51–55
- 51
A penetration tester is assessing a BLE asset-tracking system. The system uses BLE tags that advertise their presence, and a central server logs the tags' locations. The tester wants to demonstrate that an attacker can create a fake tag that appears in a different location, while also causing the real tag to be ignored. Which technique is most effective?
Select an answer first - 52
A BLE-enabled garage door opener accepts a specific command packet to open the door. An attacker captures this packet and later retransmits it to open the door without authorization. Which BLE attack is being performed?
Select an answer first - 53
Which tool is specifically designed to capture BLE traffic by acting as a passive sniffer that can decode advertisements and connection events?
Select an answer first - 54
Which BLE packet field is commonly spoofed to impersonate a legitimate device?
Select an answer first - 55
A BLE fitness tracker transmits health data to a smartphone. The tracker uses legacy pairing with a fixed 4-digit PIN. An analyst captures the pairing process and wants to decrypt the subsequent data traffic. Which approach is most effective?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.