
GIAC Defending Advanced Threats
Domain 2Objective 3
Active Directory/Domains GDAT Practice Questions (Page 2)
Part of the Post-Exploitation and Movement domain, which makes up ~29% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 5–8 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
10concepts
Questions 6–10
- 6
What is the purpose of a service ticket in Kerberos authentication?
Select an answer first - 7
In an Active Directory domain, which component is responsible for authenticating users and issuing security tokens for access to domain resources?
Select an answer first - 8
Which of the following is a common misconfiguration that can lead to domain privilege escalation?
Select an answer first - 9
A penetration tester has gained write access to a GPO that applies to the 'Workstations' OU. The tester wants to achieve persistent administrative access to all workstations in that OU. Which action is most effective?
Select an answer first - 10
You are assessing a multi-forest environment. Forest A has a one-way trust where Forest A trusts Forest B. You have compromised a domain admin in Forest B. Which statement is most accurate regarding your ability to access resources in Forest A?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDAT” is a trademark of its owner, used for identification only.