
GIAC Defending Advanced Threats
Domain 2Objective 1
Installation GDAT Practice Questions (Page 2)
Part of the Post-Exploitation and Movement domain, which makes up ~29% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~15–23 in this domain), expect 5–8 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)
43questions here
9free pages
5concepts
Questions 6–10
- 6
Which item is a prerequisite that should be confirmed before installing a post-exploitation tool on a target system?
Select an answer first - 7
An operator needs to install a post-exploitation framework on an air-gapped network. The operator can bring a USB drive into the facility, but all files are subject to inspection. The framework's official site provides a PGP signature and a SHA-256 hash. Which action best ensures the integrity and authenticity of the software?
Select an answer first - 8
A penetration tester is planning to install a post-exploitation framework on a compromised Linux server. The tester needs to avoid disrupting a critical production database running on the same host. Which planning step is most important?
Select an answer first - 9
Which action is a recommended best practice when executing the installation of a post-exploitation framework?
Select an answer first - 10
After installing a post-exploitation tool on a Windows host, an operator runs a test command and receives an error that a required DLL is missing. The tool was working on the operator's lab machine. What is the most likely cause?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GDAT” is a trademark of its owner, used for identification only.