Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 5Objective 1

Endpoint Control Evasions and Escalation GXPN Practice Questions (Page 14)

Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 73 practice questions to prepare you well beyond it. (estimate)

73questions here
15free pages
20concepts

Questions 66–70

  1. 66application · medium

    You have discovered a critical remote code execution vulnerability in a product during a security assessment. The development team needs to understand the risk and how to fix it. What should you include in your report?

    Select an answer first
  2. 67application · medium

    You have compromised a Windows service running as a low-privileged user but with the SeDebugPrivilege enabled. You need to escalate to SYSTEM to complete the assessment. Which technique is most appropriate?

    Select an answer first
  3. 68application · medium

    A penetration tester is performing a red team exercise against a Windows 10 endpoint that has an EDR solution with kernel-level callbacks and user-mode API hooking. The tester needs to execute a custom C# payload that will run in the context of a legitimate signed Microsoft binary to avoid application whitelisting. Which approach would most effectively achieve the objective while minimizing EDR detection?

    Select an answer first
  4. 69application · medium

    You have compromised a Windows service account that has the SeImpersonatePrivilege enabled. The service runs on a server where you need to escalate to SYSTEM to access a protected configuration file. You have already confirmed that the local admin account password is unknown and that the server is fully patched. Which approach is most appropriate to escalate privileges?

    Select an answer first
  5. 70application · medium

    A software company is integrating security testing into its development lifecycle. The team wants to identify design-level threats early in the SDLC before code is written. Which activity should be performed first?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.