
GIAC Exploit Researcher and Advanced Penetration Tester
Domain 3Objective 3
Traffic Interception and Manipulation GXPN Practice Questions (Page 2)
Part of the Network and Infrastructure Attacks domain, which makes up ~14% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~10–17 in this domain), expect 3–6 from this objective — we provide 38 practice questions to prepare you well beyond it. (estimate)
38questions here
8free pages
6concepts
Questions 6–10
- 6
A penetration tester is assessing a network that uses DNS for internal name resolution. The tester wants to redirect a specific client's DNS queries to a malicious server. Which protocol vulnerability is the tester exploiting, and what is the most effective technique?
Select an answer first - 7
A penetration tester is assessing a small office network where the switch is unmanaged and does not support port security. The tester needs to intercept traffic between a specific workstation and the default gateway to capture credentials. The tester wants to avoid flooding the switch's CAM table because that would disrupt the entire office. Which technique should the tester use?
Select an answer first - 8
Which tool is primarily used for passive network traffic analysis and protocol dissection, and is often used to verify the results of traffic interception attacks?
Select an answer first - 9
Which of the following is a common method used to execute a man-in-the-middle (MITM) attack on a local network?
Select an answer first - 10
Which tool is commonly used to perform ARP spoofing and launch man-in-the-middle attacks on a local network?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.