Examers.io
ExamsOrganizationsHow it worksPricingHelp & FAQ
GIAC (SANS) logo

GIAC Exploit Researcher and Advanced Penetration Tester

Domain 1Objective 4

Windows Overflows and Execution Control GXPN Practice Questions (Page 2)

Part of the Exploitation Foundations and Memory Corruption domain, which makes up ~26% of our current practice bank. GIAC (SANS) does not publish an official question count, but from its 180-minute exam (~70–120 total, ~18–31 in this domain), expect 5–8 from this objective — we provide 27 practice questions to prepare you well beyond it. (estimate)

27questions here
6free pages
9concepts

Questions 6–10

  1. 6application · medium

    A tester is exploiting a stack overflow in a Windows 10 application with DEP and ASLR enabled. The tester has identified a reliable info leak that reveals the base address of a non-ASLR module. The goal is to execute shellcode. Which approach is most appropriate?

    Select an answer first
  2. 7application · medium

    An exploit developer is building a ROP chain for a Windows application that has DEP enabled. The developer has identified a stack pivot gadget that moves the stack pointer to a controlled buffer. What is the next step in the ROP chain?

    Select an answer first
  3. 8application · medium

    A developer is analyzing a crash dump from a Windows application that suffered a stack buffer overflow. The crash shows that the return address was overwritten with the value 0x41414141. The application is compiled with ASLR enabled. What does this indicate about the exploitability of the vulnerability?

    Select an answer first
  4. 9application · medium

    A tester is exploiting a stack overflow in a Windows service. The overflow buffer is small (only 64 bytes), but the tester can place a large payload in a heap buffer that is freed before the overflow occurs. DEP and ASLR are enabled. The tester wants to execute the large payload. Which technique is most appropriate?

    Select an answer first
  5. 10foundation · easy

    What is the primary consequence of a stack buffer overflow that writes beyond the bounds of a local array?

    Select an answer first
Finished these 5 questions?

Review the revealed explanations, or continue through the curriculum.

Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by GIAC (SANS). “GXPN” is a trademark of its owner, used for identification only.