GCIH - GIAC Certified Incident Handler

NO.1 You are responsible for security at a company that uses a lot of Web applications. You are
most concerned about flaws
in those applications allowing some attacker to get into your network. What method would be best
for finding such
A. Manual penetration testing
B. Automated penetration testing
C. Code review
D. Vulnerability scanning
Answer: D

NO.2 Maria works as a professional Ethical Hacker. She is assigned a project to test the security of
She wants to test a DoS attack on the We-are-secure server. She finds that the firewall of the server is
blocking the
ICMP messages, but it is not checking the UDP packets. Therefore, she sends a large amount of UDP
echo request
traffic to the IP broadcast addresses. These UDP requests have a spoofed source address of the We-
are-secure server.
Which of the following DoS attacks is Maria using to accomplish her task?
A. Ping flood attack
B. Smurf DoS attack
C. Teardrop attack
D. Fraggle DoS attack
Answer: D

NO.3 You work as a Network Administrator for Net Perfect Inc. The company has a Windows-based
network. The company
wants to fix potential vulnerabilities existing on the tested systems. You use Nessus as a vulnerability
program to fix the vulnerabilities. Which of the following vulnerabilities can be fixed using Nessus?
Each correct answer represents a complete solution. Choose all that apply.
A. Vulnerabilities that allow a remote cracker to control sensitive data on a system
B. Vulnerabilities that help in Code injection attacks
C. Misconfiguration (e.g. open mail relay, missing patches, etc.)
D. Vulnerabilities that allow a remote cracker to access sensitive data on a system
Answer: A,C,D

NO.4 Which of the following commands is used to access Windows resources from Linux
A. mutt
B. smbclient
C. scp
D. rsync
Answer: B

試験科目:「GIAC Certified Incident Handler」
問題と解答:全335問

