Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 1Objective 1

Linux Execution, Memory, and Shellcode Foundations GXPN Practice Questions (Page 7)

Part of the Exploitation Foundations and Memory Corruption domain, which makes up ~26% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~18–31 in this domain), expect 5–8 from this objective — we provide 35 practice questions to prepare you well beyond it. (estimate)

35questions here
7free pages
9concepts

Questions 31–35

  1. 31foundation · easy

    On 32-bit x86 Linux, how are function arguments typically passed to a function?

    Select an answer first
  2. 32application · medium

    You are developing shellcode for a Linux exploit that will be injected into a buffer at an unknown address. To ensure it executes correctly regardless of where it lands, which property must your shellcode have?

    Select an answer first
  3. 33foundation · easy

    What does it mean for shellcode to be position-independent?

    Select an answer first
  4. 34application · medium

    You are writing x86-64 Linux shellcode that needs to invoke the execve system call to execute /bin/sh. You have already set up the registers so that RAX contains the syscall number for execve. What must you do next to actually perform the system call?

    Select an answer first
  5. 35foundation · easy

    Why is it important to avoid null bytes (0x00) in shellcode that is copied using string functions like strcpy?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

No more pagesBack to GXPN

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.