Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cyber Incident Leader

Domain 1Objective 2

Credential Attacks GCIL Practice Questions (Page 7)

Part of the Attack Types and Vectors domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~17–26 in this domain), expect 3–5 from this objective — we provide 56 practice questions to prepare you well beyond it. (estimate)

56questions here
12free pages
9concepts

Questions 31–35

  1. 31application · medium

    A user receives an email that appears to be from the company's IT department, asking them to verify their password by clicking a link. The link leads to a fake login page. The user enters their credentials and later reports the incident. Which immediate action should the security team take?

    Select an answer first
  2. 32application · medium

    A company wants to reduce the risk of credential reuse across multiple systems. Which policy is most effective?

    Select an answer first
  3. 33foundation · easy

    In a pass-the-hash attack, what does the attacker use to authenticate to a remote system?

    Select an answer first
  4. 34foundation · easy

    What is the primary function of a keylogger?

    Select an answer first
  5. 35expert · hard

    A company's web application is being targeted by a brute-force attack. The security team wants to slow down the attack without affecting legitimate users who occasionally mistype their passwords. Which control is most appropriate?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCIL” is a trademark of its owner, used for identification only.