Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 5Objective 1

Endpoint Control Evasions and Escalation GXPN Practice Questions (Page 8)

Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 73 practice questions to prepare you well beyond it. (estimate)

73questions here
15free pages
20concepts

Questions 36–40

  1. 36foundation · easy

    What is polymorphism in the context of antivirus evasion?

    Select an answer first
  2. 37foundation · easy

    What is the role of reverse engineering in analyzing security patches?

    Select an answer first
  3. 38foundation · easy

    What is fuzzing in the context of vulnerability discovery?

    Select an answer first
  4. 39expert · hard

    You have compromised a Windows server and have a shell as a service account with SeImpersonatePrivilege. The server is fully patched, and the EDR is configured to block known potato exploit binaries. You need to escalate to SYSTEM without triggering the EDR. Which approach is most appropriate?

    Select an answer first
  5. 40foundation · easy

    What is the purpose of threat modeling for a product?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.