
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 2Objective 1
Bypassing Linux Exploit Mitigations GXPN Practice Questions (Page 3)
Part of the Exploit Mitigation Bypass Techniques domain, which makes up ~9% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~6–11 in this domain), expect 3–6 from this objective — we provide 22 practice questions to prepare you well beyond it. (estimate)
22questions here
5free pages
9concepts
Questions 11–15
- 11
A stack canary is a random value placed between the buffer and the saved return address. Which of the following is a common method to bypass a stack canary?
Select an answer first - 12
Which of the following is a key characteristic of a ROP gadget?
Select an answer first - 13
When combining multiple mitigation bypasses, what is the typical order of steps in a modern Linux exploit?
Select an answer first - 14
A tester is exploiting a stack overflow in a binary that has a stack canary and ASLR enabled. The tester has a format string vulnerability that can leak arbitrary memory. Which sequence of actions is most efficient to bypass both protections?
Select an answer first - 15
When a binary is compiled with Partial RELRO, which of the following sections remains writable and is a common target for exploitation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.