GIAC Certified Incident Handler (GCIH) Free Practice Exam Questions

178 real GIAC Certified Incident Handler (GCIH) exam questions with answers and AI explanations. GIAC certification prep — page 16 of 18.

  1. Question 181: Which of the following tools can be used as penetration tools in the Information system auditing process? Each correct answer represents a complete solution. (…
  2. Question 182: John works as a professional Ethical Hacker. He is assigned a project to test the security of www.weare-secure.com. He is working on the Linux operating system…
  3. Question 183: Which of the following Linux rootkits allows an attacker to hide files, processes, and network connections? Each correct answer represents a complete solution.…
  4. Question 184: John, a novice web user, makes a new E-mail account and keeps his password as "apple", his favorite fruit. John's password is vulnerable to which of the follow…
  5. Question 185: You are monitoring your network's behavior. You find a sudden increase in traffic on the network. It seems to come in bursts and emanate from one specific mach…
  6. Question 186: Adam works as a Security Administrator for Umbrella Technology Inc. He reported a breach in security to his senior members, stating that "security defenses has…
  7. Question 187: You want to measure the number of heaps used and overflows occurred at a point in time. Which of the following commands will you run to activate the appropriat…
  8. Question 188: Which of the following incident response team members ensures that the policies of the organization are enforced during the incident response?
  9. Question 189: In the network logs there are ACK/FIN/PSH/URG packets from a host going to a closed port, and SYN/FIN/URG/PSH packets going to open ports. What is the host lik…
  10. Question 190: When containing an incident, who makes the final decision on whether a box should be taken offline?