Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Cloud Penetration Tester

Domain 3Objective 2

Microsoft Azure Cloud Services and Attacks GCPN Practice Questions (Page 1)

Part of the Cloud Platform Attacks domain, which makes up ~23% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~12–18 in this domain), expect 4–6 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)

42questions here
9free pages
10concepts

Questions 1–5

  1. 1expert · medium

    A penetration tester has discovered that an Azure Storage account has a shared access signature (SAS) token that grants 'read' and 'write' permissions on a blob container. The SAS token was created with a start time of one hour ago and an expiry time of one year from now. The tester wants to use this SAS token to access the storage account. What is the most significant limitation of this SAS token?

    Select an answer first
  2. 2foundation · easy

    Which Azure DevOps component is the actual machine (virtual or physical) that executes the jobs defined in a pipeline, and can be targeted by attackers to inject malicious code into the build process?

    Select an answer first
  3. 3foundation · easy

    Which Azure Key Vault component defines which users or applications can perform specific operations on secrets, keys, and certificates?

    Select an answer first
  4. 4application · medium

    During an Azure penetration test, you compromise a service principal that has the 'Key Vault Contributor' role on a specific key vault. Which of the following actions can you perform to retrieve secrets from that key vault?

    Select an answer first
  5. 5application · medium

    A penetration tester is assessing an Azure environment where a VM is behind an Azure Load Balancer. The load balancer has a backend pool of two VMs, and the health probe is set to TCP port 3389. The tester discovers that one of the VMs has a misconfigured NSG that allows inbound RDP from the internet. Which of the following is the MOST likely attack vector?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GCPN” is a trademark of its owner, used for identification only.