Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 5Objective 2

Product Security Testing and Fuzzing Foundations GXPN Practice Questions (Page 7)

Part of the Endpoint Evasion, Privilege Escalation, and Product Security Testing domain, which makes up ~33% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~23–40 in this domain), expect 8–13 from this objective — we provide 45 practice questions to prepare you well beyond it. (estimate)

45questions here
9free pages
8concepts

Questions 31–35

  1. 31expert · hard

    A fuzzing campaign using libFuzzer on a C++ library is running in a CI environment with limited CPU resources. The team notices that the fuzzer is spending most of its time on a single input that causes a very slow parsing path, but no crash. They want to improve the efficiency of the campaign. What should they do?

    Select an answer first
  2. 32application · medium

    A security analyst is evaluating fuzzing approaches for a closed-source legacy application that only has a network interface. The analyst has no source code and no documentation about the protocol. Which fuzzing type is most appropriate for this scenario?

    Select an answer first
  3. 33application · medium

    A product security team is preparing to fuzz a network daemon that parses a proprietary binary protocol. The protocol has a well-defined header followed by variable-length fields, and the team has a large set of legitimate traffic captures. They want to maximize coverage of the parser's state machine while minimizing the effort to build a grammar from scratch. Which approach best meets this goal?

    Select an answer first
  4. 34foundation · easy

    Which fuzzing tool is known for its coverage-guided approach and is commonly used for fuzzing file parsers and binary formats?

    Select an answer first
  5. 35application · medium

    A security team is fuzzing a network protocol implementation and needs to generate test cases that respect the protocol's state machine (e.g., handshake, data transfer, teardown). Which fuzzing tool feature is most important for this task?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.