Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Security Essentials

Domain 5Objective 3

Malicious Code & Exploit Mitigation GSEC Practice Questions (Page 5)

Part of the Security Operations and Incident Response domain, which makes up ~16% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 240-minute exam (~95–160 total, ~15–26 in this domain), expect 4–7 from this objective — we provide 44 practice questions to prepare you well beyond it. (estimate)

44questions here
9free pages
6concepts

Questions 21–25

  1. 21application · medium

    A company wants to mitigate the impact of a buffer overflow exploit in a legacy application that cannot be patched. Which mitigation technique is MOST appropriate?

    Select an answer first
  2. 22foundation · easy

    During incident response for a malware infection, which step involves isolating affected systems from the network to prevent further spread?

    Select an answer first
  3. 23foundation · easy

    Which type of malware analysis involves running the malware in a controlled environment to observe its behavior, such as file system changes and network connections?

    Select an answer first
  4. 24expert · hard

    A company is deploying a new web application that handles sensitive data. The security team wants to protect against both SQL injection and cross-site scripting (XSS) attacks. Which combination of controls is most effective?

    Select an answer first
  5. 25foundation · easy

    Which exploit mitigation technique randomizes memory addresses of system libraries and executables to make it harder for an attacker to predict target addresses?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GSEC” is a trademark of its owner, used for identification only.