
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 4Objective 2
Practical Scripting for Offensive Operations GXPN Practice Questions (Page 3)
Part of the Offensive Scripting and Cryptography domain, which makes up ~18% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~13–22 in this domain), expect 7–11 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
8concepts
Questions 11–15
- 11
You are crafting a buffer overflow payload that must be URL-encoded before being sent to a web application. The payload contains binary data, including null bytes. Which Python approach correctly encodes the payload?
Select an answer first - 12
In Python, which method of a socket object is used to send data over a connected TCP socket?
Select an answer first - 13
You are automating a vulnerability scan using Nessus. You need to run the scan and then parse the results to extract the list of high-severity findings. Which approach is most efficient?
Select an answer first - 14
When integrating Nmap into a Python script, which method is used to execute Nmap and capture its XML output?
Select an answer first - 15
In PowerShell, which cmdlet is used to execute a script block or command on a remote system using WinRM?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.