
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 5Objective 1
Endpoint Control Evasions and Escalation GXPN Practice Questions (Page 13)
Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 73 practice questions to prepare you well beyond it. (estimate)
73questions here
15free pages
20concepts
Questions 61–65
- 61
A product security team wants to discover memory corruption vulnerabilities in a C++ application that parses untrusted input files. Which testing technique is most appropriate to start with?
Select an answer first - 62
A security researcher has discovered a memory corruption vulnerability in a proprietary protocol parser. The researcher has a proof-of-concept that causes a crash but wants to develop a reliable exploit that bypasses ASLR and DEP. Which approach is most appropriate?
Select an answer first - 63
Which of the following is a common UAC bypass technique?
Select an answer first - 64
You are developing a custom payload for a red team engagement. The target environment uses an EDR that performs static signature scanning and user-mode API hooking. You need to ensure the payload evades both static detection and runtime monitoring. Which approach is most effective?
Select an answer first - 65
How can a misconfigured scheduled task be exploited for privilege escalation?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.