Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Mobile Device Security Analyst

Domain 2Objective 1

Analyzing Mobile Applications GMOB Practice Questions (Page 4)

Part of the Mobile Application Analysis and Assessment domain, which makes up ~32% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~16–26 in this domain), expect 5–9 from this objective — we provide 57 practice questions to prepare you well beyond it. (estimate)

57questions here
12free pages
12concepts

Questions 16–20

  1. 16foundation · easy

    Which of the following is an example of using automation in mobile app analysis?

    Select an answer first
  2. 17foundation · easy

    What is the purpose of runtime manipulation in mobile application security testing?

    Select an answer first
  3. 18foundation · easy

    Which tool is commonly used to dump and analyze the memory of a mobile app?

    Select an answer first
  4. 19application · medium

    During an API assessment of a mobile app, you notice that the app sends a device identifier and a one-time password (OTP) to an endpoint `/api/verify_otp`. The response includes a session token. You also observe that the OTP is generated on the client side and sent in plaintext over HTTPS. Which vulnerability is most directly indicated?

    Select an answer first
  5. 20foundation · easy

    Which of the following is a security weakness commonly found during API assessment?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GMOB” is a trademark of its owner, used for identification only.