
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 3Objective 2
Infrastructure Manipulation and Exploitation GXPN Practice Questions (Page 5)
Part of the Network and Infrastructure Attacks domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 3–6 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
7concepts
Questions 21–25
- 21
You have compromised a router and want to ensure you can regain access even if the device is rebooted and the configuration is reloaded. Which method provides the most persistent access?
Select an answer first - 22
Which attack involves an attacker sending a forged DNS response to a client, causing the client to resolve a legitimate domain name to an attacker-controlled IP address?
Select an answer first - 23
An attacker on the same subnet sends forged ARP replies to associate the victim's IP address with the attacker's MAC address. What is the primary goal of this attack?
Select an answer first - 24
After compromising a network switch, an attacker uses the switch as a relay to launch attacks against systems on a separate VLAN. What is this technique called?
Select an answer first - 25
You have compromised a network switch and want to maintain access for a long-term red team exercise. The switch is managed via SNMP and has a web interface. Which action is most appropriate for persistence?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.