GIAC GAWN Certification Sample Questions

GAWN Dumps, GAWN PDF, GAWN VCE, GIAC Assessing and Auditing Wireless Networks VCE, GIAC GAWN PDFThe purpose of this Sample Question Set is to provide you with information about the GIAC Assessing and Auditing Wireless Networks (GAWN) exam. These sample questions will make you very familiar with both the type and the difficulty level of the questions on the GAWN certification test. To get familiar with real exam environment, we suggest you try our Sample GIAC GAWN Certification Practice Exam. This sample practice exam gives you the feeling of reality and is a clue to the questions asked in the actual GIAC Assessing and Auditing Wireless Networks (GAWN) certification exam.

These sample questions are simple and basic questions that represent likeness to the real GIAC Assessing and Auditing Wireless Networks exam questions. To assess your readiness and performance with real-time scenario based questions, we suggest you prepare with our Premium GIAC GAWN Certification Practice Exam. When you solve real time scenario based questions practically, you come across many difficulties that give you an opportunity to improve.

GIAC GAWN Sample Questions:

01. During an IoT assessment an auditor extracts the firmware from an inexpensive Zigbee sensor and finds the network key stored in plaintext in the image, identical across every unit of that model.
Why does this finding matter to the whole mesh?
a) Because the network key is shared across the mesh, recovering it from any one device lets an attacker decrypt every node's traffic and forge frames without ever joining.
b) It matters only if the attacker can also capture a live join exchange to confirm the key.
c) It only affects that one sensor, since each Zigbee node holds an independent key.
d) It exposes the device's Wi-Fi credentials, letting the attacker pivot onto the corporate wireless LAN.
 
02. An auditor must decide whether to recommend replacing a 125 kHz badge system entirely or applying a compensating control instead.
Which two findings would together justify full replacement?
(Choose two.)
a) The readers present a per-read cryptographic challenge that each card must answer.
b) The cards perform an ECDH key agreement with the reader during each read.
c) The credential is a fixed number that the card presents with no cryptographic authentication to the reader.
d) The reader-to-controller link carries that credential without encryption or authentication.
 
03. The same relay technique that forwards an NFC exchange over a network is a serious threat to a contactless door badge but a much weaker threat to an EMV contactless payment.
Which explanation best accounts for the difference?
a) The payment terminal automatically detects the extra network latency of a relay, flags the delay, refuses the transaction, and alerts the acquirer.
b) EMV payments use a longer read range, so the relay has less distance to cover.
c) Relay attacks only affect peer-to-peer mode, which payments do not use.
d) EMV binds each payment with per-transaction cryptography and often an amount, so a relayed exchange does not forge a valid, differently-valued transaction, whereas a challenge-less access token relayed over distance still opens the door.
 
04. An assessor presents a small device that transmits a previously captured badge value to a door reader, and the door opens as if the genuine badge had been used.
Which property of the low-frequency prox system explains why the controller cannot distinguish the emulator from the real badge?
a) The emulator must first defeat the card's AES mutual-authentication challenge, using replayed key material, which it captured earlier.
b) The controller compares the badge's radio MAC address, which the emulator has spoofed.
c) The card and reader never perform any authentication, so the controller validates only the transmitted identifier, and an emulator that reproduces that identifier is indistinguishable from the genuine tag.
d) The reader's tamper sensor was disabled, allowing the emulated read to succeed.
 
05. Reviewing a legacy Bluetooth peripheral, an auditor finds it enforces no authentication and no encryption on any connection or service.
Which Bluetooth security mode does this describe?
a) Security Mode 2, which enforces security per service after the channel is set up.
b) Security Mode 1, which enforces no security.
c) Security Mode 3, which enforces authentication and encryption before the link is established.
d) Security Mode 4, which enforces service-level security using Secure Simple Pairing.
 
06. During a facility walkthrough an auditor's Bluetooth phone receives an unsolicited contact card carrying a short taunting note; nothing on the phone is read, altered, or remotely operated.
Which attack does this match?
a) BlueSmacking, a flood of oversized packets that overwhelms the device and drives it offline.
b) Bluesnarfing, the unauthorized copying of contacts, messages, or files off the target device.
c) Bluebugging, the remote control of the device to place calls or send messages as the user.
d) Bluejacking: an unsolicited message push that accesses no data.
 
07. An auditor writes hardening recommendations for a 13.56 MHz access-badge deployment that is exposed to skimming, cloning, and cardholder tracking.
Which three controls most directly address these risks?
(Choose three.)
a) Suppress the printed facility code so attackers cannot enumerate valid cards.
b) Issue RF-shielding sleeves so idle cards cannot be energized and skimmed or tracked.
c) Rely on the short 13.56 MHz read range to keep attackers out of skimming distance.
d) Deploy cards that perform cryptographic mutual authentication, such as AES DESFire-class chips, rather than exposing a static value.
e) Configure readers to validate the card's cryptographic authentication instead of accepting the UID alone.
 
08. Two phones use an NFC tap to start sharing a large file, and the auditor is asked where the real exposure lies.
Which statement best locates the security concern?
a) NFC encrypts the file with AES during the tap, so no further control is needed.
b) NFC usually only bootstraps the connection and the bulk transfer moves to a higher-bandwidth link such as Bluetooth or Wi-Fi Direct, so the security depends on that follow-on link's authentication and encryption.
c) Card-emulation mode protects the transfer once the tap begins.
d) The whole file crosses the NFC tap itself, and its few-centimetre range secures the transfer from end to end, because an eavesdropper would have to stay within that same tiny distance for the entire duration of the exchange between the two phones.
 
09. Before any connection is made, a Bluetooth Low Energy wearable continuously broadcasts advertising packets that anyone nearby can capture passively.
What reconnaissance value do these packets primarily give an attacker?
a) They reveal the device name and advertised services in the clear, showing what the device is.
b) They contain the actual pairing key, letting the whole session be decrypted immediately by any nearby listener.
c) They expose the user's stored credentials for the paired phone.
d) They carry the current GATT characteristic values, leaking the sensor's live data directly.
 
10. After a cloning demonstration, a facilities team proposes to fix the problem by re-issuing every 125 kHz badge with a new, unique card number.
How should the auditor evaluate this proposal?
a) It resolves the issue, since the previously cloned numbers are deactivated in the controller and the new ones are not yet known to the attacker who copied the originals.
b) It resolves the issue, because a unique number per badge acts as a per-card secret key.
c) It is unnecessary, because 125 kHz prox already authenticates each read with a rolling code.
d) It does not address the weakness, because the new numbers are still static identifiers with no authentication and are equally cloneable.

Answers:

Question: 01
Answer: a
Question: 02
Answer: c, d
Question: 03
Answer: d
Question: 04
Answer: c
Question: 05
Answer: b
Question: 06
Answer: d
Question: 07
Answer: b, d, e
Question: 08
Answer: b
Question: 09
Answer: a
Question: 10
Answer: d

Note: For any error in GIAC Assessing and Auditing Wireless Networks (GAWN) certification exam sample questions, please update us by writing an email on feedback@edusum.com.

Rating: 5 / 5 (77 votes)