
GIAC Red Team Professional
Domain 3Objective 1
Attacking Active Directory GRTP Practice Questions (Page 8)
Part of the Active Directory Attacks and Post-Exploitation domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 61 practice questions to prepare you well beyond it. (estimate)
61questions here
13free pages
19concepts
Questions 36–40
- 36
How can Group Policy Objects (GPOs) be abused to escalate privileges in an Active Directory environment?
Select an answer first - 37
You have obtained the NTLM hash of a domain user who is a local administrator on a target server. The target server has SMB signing enforced, and you need to authenticate using Kerberos to avoid NTLM relay restrictions. Which technique should you use?
Select an answer first - 38
You have a low-privileged domain account and need to obtain password material for accounts that do not require Kerberos pre-authentication. You want to avoid any interaction with the target accounts' passwords. Which technique should you use?
Select an answer first - 39
What is the primary goal of lateral movement in an Active Directory environment?
Select an answer first - 40
Which statement correctly describes the relationship between domains, trees, and forests in Active Directory?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GRTP” is a trademark of its owner, used for identification only.