
GIAC Cloud Penetration Tester
Domain 3Objective 3
Azure Functions and Windows Containers GCPN Practice Questions (Page 8)
Part of the Cloud Platform Attacks domain, which makes up ~23% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–18 in this domain), expect 4–6 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)
37questions here
8free pages
7concepts
Questions 36–37
- 36
An Azure Function has a managed identity assigned with permissions to read secrets from Azure Key Vault. How could an attacker abuse this to escalate privileges?
Select an answer first - 37
An Azure Function with an HTTP trigger is behind Azure API Management (APIM). The function uses a system-assigned managed identity to access a storage account. A penetration tester wants to test for SSRF by sending a request to the function with a URL parameter. The function fetches the URL and returns the response. Which control would most effectively prevent the tester from accessing internal resources?
Select an answer first
Finished these 2 questions?
Review the revealed explanations, or continue through the curriculum.
No more pagesBack to GCPN
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCPN” is a trademark of its owner, used for identification only.