Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Certified Incident Handler

Domain 3Objective 3

Web Application Injection Attacks GCIH Practice Questions (Page 15)

Part of the Web Application Security domain, which makes up ~25% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~24–40 in this domain), expect 8–13 from this objective — we provide 80 practice questions to prepare you well beyond it. (estimate)

80questions here
16free pages
25concepts

Questions 71–75

  1. 71application · medium

    An application authenticates users against an LDAP directory using the following filter: (&(uid=USER)(userPassword=PASS)). A tester submits the username 'admin)(|(uid=*' and a blank password, and the application grants access to the admin account. Which code change would most effectively prevent this LDAP injection while still allowing normal authentication?

    Select an answer first
  2. 72application · medium

    A C-based network service copies user-supplied data into a fixed-size buffer using strcpy(). A security analyst discovers that sending a specially crafted input longer than the buffer causes the service to crash and occasionally execute attacker-supplied shellcode. Which combination of mitigations would be most effective to prevent exploitation of this vulnerability?

    Select an answer first
  3. 73foundation · easy

    What is command injection?

    Select an answer first
  4. 74foundation · easy

    Why is proper error handling important in preventing XPath injection?

    Select an answer first
  5. 75foundation · easy

    How does XPath injection typically work?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIH” is a trademark of its owner, used for identification only.