Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 2Objective 1

Bypassing Linux Exploit Mitigations GXPN Practice Questions (Page 3)

Part of the Exploit Mitigation Bypass Techniques domain, which makes up ~9% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~6–11 in this domain), expect 3–6 from this objective — we provide 22 practice questions to prepare you well beyond it. (estimate)

22questions here
5free pages
9concepts

Questions 11–15

  1. 11foundation · easy

    A stack canary is a random value placed between the buffer and the saved return address. Which of the following is a common method to bypass a stack canary?

    Select an answer first
  2. 12foundation · easy

    Which of the following is a key characteristic of a ROP gadget?

    Select an answer first
  3. 13foundation · easy

    When combining multiple mitigation bypasses, what is the typical order of steps in a modern Linux exploit?

    Select an answer first
  4. 14expert · hard

    A tester is exploiting a stack overflow in a binary that has a stack canary and ASLR enabled. The tester has a format string vulnerability that can leak arbitrary memory. Which sequence of actions is most efficient to bypass both protections?

    Select an answer first
  5. 15foundation · easy

    When a binary is compiled with Partial RELRO, which of the following sections remains writable and is a common target for exploitation?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.