
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 5Objective 2
Product Security Testing and Fuzzing Foundations GXPN Practice Questions (Page 2)
Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)
45questions here
9free pages
8concepts
Questions 6–10
- 6
A penetration tester is fuzzing a file parser that accepts a custom binary format. The format has a magic header, a checksum, and then a series of records. The tester wants to focus fuzzing on the record parsing logic, not the header validation. Which approach is most effective?
Select an answer first - 7
What is the primary advantage of coverage-guided fuzzing over simple mutation-based fuzzing?
Select an answer first - 8
A security engineer is evaluating fuzzing tools for a project that has both a C++ library and a Python wrapper. The library is performance-critical and has been fuzzed with libFuzzer, but the Python wrapper is new and untested. The team wants to fuzz the Python wrapper's input handling. Which tool is most appropriate?
Select an answer first - 9
A security tester is fuzzing a network protocol parser that expects inputs following a strict, well-defined structure. Which fuzzing technique is most appropriate for generating valid yet malformed inputs that the parser will accept?
Select an answer first - 10
A fuzzing campaign on a database engine produced a crash that only occurs when a specific sequence of SQL statements is executed. The crash is a heap buffer overflow in the query optimizer. The team wants to determine if the crash is exploitable. What is the most important next step?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.