GIAC Certified Incident Handler (GCIH) Free Practice Exam Questions

178 real GIAC Certified Incident Handler (GCIH) exam questions with answers and AI explanations. GIAC certification prep — page 11 of 18.

  1. Question 125: How do DNS tunneling tools like DNSCat2 avoid DNS caching?
  2. Question 126: Which of the following Metasploit module types would contain scanning capabilities?
  3. Question 127: A fake installer exploit is delivered using which attack?
  4. Question 128: Which encryption algorithm was replaced with the introduction of the /etc/shadow file in the Linux OS?
  5. Question 129: Which of the following natively supports SMB encryption?
  6. Question 130: Where would salted hashes be found on a Linux machine?
  7. Question 132: A popular forum for ICS professionals to discuss techniques includes code that loads scripts and ads from multiple external sites. How would an adversary lever…
  8. Question 133: An attacker is hoping to discover as many IP addresses associated with a target domain as possible. Which command would be helpful?
  9. Question 134: What password attack uses a stolen password breach list?
  10. Question 135: An attacker at IP address 11.22.33.44 set up a reverse shell so he could execute commands on a server (internal IP address 192.168.20.21) that sits behind a si…