
GIAC Assessing and Auditing Wireless Networks
Domain 4Objective 2
Bluetooth Low Energy Attacks GAWN Practice Questions (Page 6)
Part of the Bluetooth and BLE Security domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~7–11 in this domain), expect 4–6 from this objective — we provide 56 practice questions to prepare you well beyond it. (estimate)
56questions here
12free pages
10concepts
Questions 26–30
- 26
A BLE device is connected to a smartphone and uses a connection interval of 30 ms. An attacker wants to disrupt the connection without being easily detected. Which approach is most effective?
Select an answer first - 27
Which BLE phase is primarily associated with the transmission of advertisement packets that include device address and service UUIDs?
Select an answer first - 28
What is the primary goal of a BLE spoofing attack?
Select an answer first - 29
A penetration tester is assessing a BLE-enabled access control system. The tester wants to trick users into connecting their smartphones to a rogue device that mimics the legitimate access reader. Which approach best achieves this goal while also potentially disrupting legitimate connections?
Select an answer first - 30
A security analyst is investigating a BLE door lock that uses a rolling code to prevent replay attacks. The analyst has captured a valid unlock command and the subsequent unlock command from the same smartphone. The analyst wants to determine if the rolling code is predictable. Which analysis is most appropriate?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.