
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 5Objective 1
Endpoint Control Evasions and Escalation GXPN Practice Questions (Page 6)
Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 73 practice questions to prepare you well beyond it. (estimate)
73questions here
15free pages
20concepts
Questions 26–30
- 26
What is pass-the-hash in the context of credential reuse?
Select an answer first - 27
What is the purpose of UAC bypass techniques?
Select an answer first - 28
A penetration tester has gained low-privileged access to a Windows server. The tester discovers that a third-party service runs as SYSTEM and its installation directory is writable by the Everyone group. Which privilege escalation technique would be most appropriate to gain SYSTEM privileges?
Select an answer first - 29
What is token duplication in the context of Windows privilege escalation?
Select an answer first - 30
During a penetration test, a tester has gained initial access to a Linux server running a host-based intrusion detection system (HIDS) that monitors file integrity and process execution. The tester needs to maintain persistence by modifying a system configuration file, but the HIDS will alert on the change. Which technique would best evade the HIDS while achieving persistence?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.