試験科目:GIAC Certified Incident Handler
NO.1 Fill in the blank with the appropriate word.
StackGuard (as used by Immunix), ssp/ProPolice (as used by OpenBSD), and Microsoft's /GS option use
______ defense against buffer overflow attacks.
A. canary
Answer: A

NO.2 John works as a Professional Penetration Tester. He has been assigned a project to test the Website
security of www.we-are-secure Inc. On the We-are-secure Website login page, he enters ='or''=' as a
username and successfully logs on to the user page of the Web site. Now, John asks the we-aresecure
Inc. to improve the login page PHP script. Which of the following suggestions can John give to improve
the security of the we-are-secure Website login page from the SQL injection attack?
A. Use the session_regenerate_id() function
B. Use the mysql_real_escape_string() function for escaping input
C. Use the escapeshellarg() function
D. Use the escapeshellcmd() function
Answer: B

NO.3 Which of the following types of attack can guess a hashed password?
A. Teardrop attack
B. Brute force attack
C. Evasion attack
D. Denial of Service attack
Answer: B

NO.4 Ryan, a malicious hacker submits Cross-Site Scripting (XSS) exploit code to the Website of Internet
forum for online discussion. When a user visits the infected Web page, code gets automatically executed
and Ryan can easily perform acts like account hijacking, history theft etc. Which of the following types of
Cross-Site Scripting attack Ryan intends to do?
A. Document Object Model (DOM)
B. Persistent
C. Non persistent
Answer: B


