Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Red Team Professional

Domain 3Objective 1

Attacking Active Directory GRTP Practice Questions (Page 8)

Part of the Active Directory Attacks and Post-Exploitation domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 61 practice questions to prepare you well beyond it. (estimate)

61questions here
13free pages
19concepts

Questions 36–40

  1. 36foundation · easy

    How can Group Policy Objects (GPOs) be abused to escalate privileges in an Active Directory environment?

    Select an answer first
  2. 37application · medium

    You have obtained the NTLM hash of a domain user who is a local administrator on a target server. The target server has SMB signing enforced, and you need to authenticate using Kerberos to avoid NTLM relay restrictions. Which technique should you use?

    Select an answer first
  3. 38application · medium

    You have a low-privileged domain account and need to obtain password material for accounts that do not require Kerberos pre-authentication. You want to avoid any interaction with the target accounts' passwords. Which technique should you use?

    Select an answer first
  4. 39foundation · easy

    What is the primary goal of lateral movement in an Active Directory environment?

    Select an answer first
  5. 40foundation · easy

    Which statement correctly describes the relationship between domains, trees, and forests in Active Directory?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GRTP” is a trademark of its owner, used for identification only.