Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 4Objective 1

Practical Cryptography GXPN Practice Questions (Page 5)

Part of the Offensive Scripting and Cryptography domain, which makes up ~18% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~13–22 in this domain), expect 7–11 from this objective — we provide 48 practice questions to prepare you well beyond it. (estimate)

48questions here
10free pages
8concepts

Questions 21–25

  1. 21expert · hard

    A penetration tester is evaluating a system that uses a static Diffie-Hellman key pair for all sessions. The tester captures traffic and later compromises the server's long-term private key. Which sessions can the tester decrypt?

    Select an answer first
  2. 22expert · hard

    A penetration tester is assessing a custom protocol that uses AES-CBC with PKCS#7 padding. The tester has an oracle that reveals whether padding is valid. The tester wants to decrypt a captured ciphertext block. Which attack should the tester perform?

    Select an answer first
  3. 23expert · hard

    A penetration tester is evaluating a web application that uses a custom encryption scheme. The application encrypts each user's session token with AES-128-CBC using a fixed key and a random IV per session. The tester discovers that the application does not authenticate the ciphertext. Which attack is most directly enabled by this flaw?

    Select an answer first
  4. 24expert · hard

    A security architect is designing a system where IoT devices must authenticate firmware updates. The devices have limited computational power and storage. The architect needs to choose a cryptographic scheme that minimizes resource usage while providing authenticity and integrity. Which option is the best choice?

    Select an answer first
  5. 25application · medium

    A penetration tester is writing a Python script to demonstrate a man-in-the-middle attack on a Diffie-Hellman key exchange. The script intercepts the public values exchanged between two parties and substitutes its own. To complete the attack, the script must derive the shared secret with each party. Which additional step is required?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.