Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Offensive AI Analyst

Domain 2Objective 4

Bypassing Defensive Controls GOAA Practice Questions (Page 7)

Part of the AI-Driven Offensive Operations domain, which makes up ~40% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 120-minute exam (~50–80 total, ~20–32 in this domain), expect 5–8 from this objective — we provide 40 practice questions to prepare you well beyond it. (estimate)

40questions here
8free pages
5concepts

Questions 31–35

  1. 31application · medium

    A security team deploys a computer-vision model to detect weapons in luggage X-ray scans. During a red-team exercise, the team wants to test whether an attacker could conceal a small knife by placing a printed sticker on the blade. The team has white-box access to the model and can compute gradients. Which approach would most directly produce an evasion that survives physical printing?

    Select an answer first
  2. 32application · medium

    A company uses an AI-based spam filter that has been evaded by adversarial emails. The security team wants to evaluate the effectiveness of different countermeasures. They have a dataset of known adversarial examples and want to measure how well each countermeasure reduces the evasion rate. Which evaluation metric is most appropriate?

    Select an answer first
  3. 33application · medium

    A penetration tester is attempting to bypass an AI-based malware detection system that uses a deep learning model. The tester has limited query access to the system and wants to minimize the number of queries. Which attack technique is most suitable?

    Select an answer first
  4. 34foundation · easy

    What is the primary goal of a red-team exercise targeting AI-driven defensive controls?

    Select an answer first
  5. 35application · medium

    A company uses an AI-based web application firewall (WAF) that blocks SQL injection attempts by analyzing query strings. A penetration tester wants to bypass the WAF to deliver a SQL injection payload. The tester has observed that the WAF model is trained on token sequences and is sensitive to unusual character combinations. Which technique is most likely to evade the WAF?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GOAA” is a trademark of its owner, used for identification only.