
GIAC Penetration Tester (GPEN)
Domain 4Objective 1
Kerberos Attacks GPEN Practice Questions (Page 3)
Part of the Active Directory Attacks domain, which makes up ~15% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~11–18 in this domain), expect 6–9 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
12concepts
Questions 11–15
- 11
What information is typically contained within a Kerberos Ticket-Granting Ticket (TGT)?
Select an answer first - 12
You have captured a Kerberoast hash from a service ticket and an AS-REP hash from an account with preauthentication disabled. You want to crack both using hashcat. Which hash mode should you use for each?
Select an answer first - 13
Your organization has been the victim of Kerberoasting and AS-REP roasting attacks. You need to implement mitigations to reduce the risk of these attacks. Which combination of measures is most effective?
Select an answer first - 14
What type of data is extracted from a Kerberos ticket for offline cracking?
Select an answer first - 15
Your domain currently supports RC4 and AES encryption types. You are concerned about Kerberos downgrade attacks. You want to disable RC4 while maintaining compatibility with legacy systems. Which approach best balances security and compatibility?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GPEN” is a trademark of its owner, used for identification only.