Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Assessing and Auditing Wireless Networks

Domain 3Objective 2

Hotspots GAWN Practice Questions (Page 1)

Part of the Wireless Client and Network Attacks domain, which makes up ~15% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~8–12 in this domain), expect 3–4 from this objective — we provide 31 practice questions to prepare you well beyond it. (estimate)

31questions here
7free pages
6concepts

Questions 1–5

  1. 1expert · hard

    A penetration tester is authorized to assess a company's Wi-Fi network, including the guest hotspot. During the assessment, the tester discovers that the guest hotspot is using a captive portal that collects email addresses. The tester wants to test whether the portal is vulnerable to credential harvesting. Which action is most appropriate within the scope of the authorization?

    Select an answer first
  2. 2application · medium

    A hotel offers free Wi-Fi to guests. Upon connecting, guests are redirected to a web page that requires them to enter their room number and last name before gaining internet access. The hotel manager wants to ensure that guest communications are protected from eavesdropping by other guests on the same network. What is the most effective additional measure the hotel should implement?

    Select an answer first
  3. 3application · medium

    A penetration tester is hired to assess the security of a public airport's Wi-Fi hotspot. The contract explicitly authorizes testing of the airport's own access points but does not mention any other networks. During the assessment, the tester detects an unauthorized access point with the same SSID as the airport's network. What is the most appropriate action?

    Select an answer first
  4. 4foundation · easy

    Which of the following is an effective defense against eavesdropping on a public hotspot?

    Select an answer first
  5. 5application · medium

    A university is deploying a new guest Wi-Fi network. They want to require students to log in with their university credentials, but they are concerned about the security of transmitting those credentials over the air. Which authentication method should they use to ensure the credentials are protected?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.