
GIAC Mobile Device Security Analyst
Domain 2Objective 3
Reverse Engineering Mobile Applications GMOB Practice Questions (Page 6)
Part of the Mobile Application Analysis and Assessment domain, which makes up ~32% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~16–26 in this domain), expect 5–9 from this objective — we provide 43 practice questions to prepare you well beyond it. (estimate)
43questions here
9free pages
8concepts
Questions 26–30
- 26
An analyst is examining an iOS IPA file to understand its structure. The analyst needs to identify the main executable and the location of embedded resources such as images and plist files. Which component of the IPA file should the analyst focus on?
Select an answer first - 27
An analyst is examining an iOS IPA file and notices that it contains a binary with a large __TEXT segment and several embedded frameworks. The analyst wants to identify the app's main executable and check its architecture. Which tool or command is most appropriate?
Select an answer first - 28
Which tool is commonly used to intercept and inspect network traffic from a mobile app during analysis?
Select an answer first - 29
In an iOS IPA file, which directory typically contains the compiled executable and its associated resources?
Select an answer first - 30
Which tool is best suited for disassembling and analyzing the assembly code of a native iOS binary?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GMOB” is a trademark of its owner, used for identification only.