Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Information Security Fundamentals

Domain 3Objective 2

Intrusion and Initial Access Techniques GISF Practice Questions (Page 7)

Part of the Threats and Defenses domain, which makes up ~36% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~18–29 in this domain), expect 5–7 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)

45questions here
9free pages
9concepts

Questions 31–35

  1. 31foundation · easy

    Which of the following is a basic preventive measure against phishing attacks?

    Select an answer first
  2. 32application · medium

    A small business receives an email that appears to be from its bank. The email warns of a 'suspicious login' and urges the recipient to click a link and verify their account. The link leads to a look-alike login page that captures credentials. Which combination of controls would most directly reduce the risk of this attack succeeding?

    Select an answer first
  3. 33expert · hard

    A security team is prioritizing vulnerabilities to patch. They have a limited maintenance window and must choose between two vulnerabilities: one is a critical remote code execution flaw in a public-facing web server, and the other is a moderate privilege escalation flaw in an internal application. Which should they patch first to best reduce the risk of initial access?

    Select an answer first
  4. 34expert · hard

    An attacker sends an email to an employee that appears to be from the CEO, asking the employee to purchase gift cards and send the codes. The employee complies. Which social engineering principle is the attacker exploiting?

    Select an answer first
  5. 35application · medium

    A user receives an email that appears to be from the company's IT help desk, asking them to verify their account by clicking a link and entering their password. The user complies, and later the attacker uses those credentials to access the corporate VPN. Which intrusion lifecycle phase does the attacker's VPN login represent?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GISF” is a trademark of its owner, used for identification only.