Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Assessing and Auditing Wireless Networks

Domain 6Objective 2

Practical SDR Attacks GAWN Practice Questions (Page 7)

Part of the Advanced Wireless Attacks domain, which makes up ~19% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~10–15 in this domain), expect 3–5 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)

35questions here
7free pages
6concepts

Questions 31–35

  1. 31foundation · easy

    Which of the following is a common low-cost SDR hardware platform that is widely used for wireless signal analysis and experimentation?

    Select an answer first
  2. 32application · medium

    A penetration tester is assessing a wireless sensor network that uses a proprietary protocol. The tester has captured a valid sensor reading and wants to inject a false reading. The tester has identified the modulation and frame format. Which tool is most appropriate for crafting and transmitting the false reading?

    Select an answer first
  3. 33application · medium

    A security researcher is analyzing a wireless tire-pressure monitoring system (TPMS) that uses a proprietary protocol. The researcher has captured several signals and needs to determine the frame structure, including the preamble, sync word, and data fields. Which tool is specifically designed to assist in reverse engineering unknown wireless protocols from captured signals?

    Select an answer first
  4. 34expert · medium

    A researcher is reverse engineering a wireless protocol used by a fleet of drones. The protocol uses a custom modulation that is not supported by any commercial demodulator. The researcher has captured IQ data and needs to determine the symbol rate and modulation scheme. The researcher has access to GNU Radio and Universal Radio Hacker (URH). Which approach is most efficient?

    Select an answer first
  5. 35application · medium

    A penetration tester is assessing a wireless door lock system that uses a 433 MHz OOK signal. The tester has captured a valid 'unlock' transmission and wants to verify that the lock accepts a replayed signal. The assessment scope explicitly permits replay attacks against the lock. Which approach is the most reliable way to execute the replay?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to GAWN

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GAWN” is a trademark of its owner, used for identification only.