[Jan 07, 2024] GCIH Exam Brain Dumps – Study Notes and Theory [Q23-Q39]

5/5 - (1 vote)

[Jan 07, 2024] GCIH Exam Brain Dumps – Study Notes and Theory

Pass GIAC GCIH Test Practice Test Questions Exam Dumps

NO.23 Which of the following attacks are examples of Denial-of-service attacks (DoS)?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NO.24 Which of the following are based on malicious code?
Each correct answer represents a complete solution. Choose two.

 
 
 
 

NO.25 The IT administrator wants to implement a stronger security policy. What are the four most important security priorities for PassGuide Software Systems Pvt. Ltd.?

 
 
 
 
 
 
 
 

NO.26 Adam works as an Incident Handler for Umbrella Inc. He is informed by the senior authorities that the server of the
marketing department has been affected by a malicious hacking attack. Supervisors are also claiming that some
sensitive data are also stolen.
Adam immediately arrived to the server room of the marketing department and identified the event as an incident.
He isolated the infected network from the remaining part of the network and started preparing to image the entire
system. He captures volatile data, such as running process, ram, and network connections.
Which of the following steps of the incident handling process is being performed by Adam?

 
 
 
 

NO.27 Which of the following tools is used for vulnerability scanning and calls Hydra to launch a dictionary attack?

 
 
 
 

NO.28 CORRECT TEXT
Fill in the blank with the appropriate option to complete the statement below.
You want to block all UDP packets coming to the Linux server using the portsentry utility. For this, you have to enable the ______ option in the portsentry configuration file.

NO.29 Which of the following penetration testing phases involves gathering data from whois, DNS, and network scanning, which helps in mapping a target network and provides valuable information regarding the operating system and applications running on the systems?

 
 
 
 

NO.30 Which of the following options scans the networks for vulnerabilities regarding the security of a network?

 
 
 
 

NO.31 Which of the following is an Internet mapping technique that relies on various BGP collectors that collect information such as routing updates and tables and provide this information publicly?

 
 
 
 

NO.32 Which of the following netcat parameters makes netcat a listener that automatically restarts itself when a connection is dropped?

 
 
 
 

NO.33 Which of the following ensures that the investigation process of incident response team does not break any laws during the response to an incident?

 
 
 
 

NO.34 Which of the following statements about Denial-of-Service (DoS) attack are true?
Each correct answer represents a complete solution. Choose three.

 
 
 
 

NO.35 Which of the following protocol loggers is used to detect ping sweep?

 
 
 
 

NO.36 John, a part-time hacker, has accessed in unauthorized way to the www.yourbank.com banking Website and stolen the bank account information of its users and their credit card numbers by using the SQL injection attack. Now, John wants to sell this information to malicious person Mark and make a deal to get a good amount of money. Since, he does not want to send the hacked information in the clear text format to Mark; he decides to send information in hidden text. For this, he takes a steganography tool and hides the information in ASCII text by appending whitespace to the end of lines and encrypts the hidden information by using the IDEA encryption algorithm. Which of the following tools is John using for steganography?

 
 
 
 

NO.37 You enter the following URL on your Web browser:
http://www.we-are-secure.com/scripts/..%co%af../..%co%
af../windows/system32/cmd.exe?/c+dir+c:
What kind of attack are you performing?

 
 
 
 

NO.38 You work as a Network Administrator for Net Perfect Inc. The company has a Windows-based network. The company uses Check Point SmartDefense to provide security to the network of the company. You use SmartDefense on the HTTP servers of the company to fix the limitation for the maximum number of response headers allowed.
Which of the following attacks will be blocked by defining this limitation?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

NO.39 Which of the following statements are true about firewalking?
Each correct answer represents a complete solution. Choose all that apply.

 
 
 
 

Verified GCIH dumps Q&As – GCIH dumps with Correct Answers: https://www.dumpsreview.com/GCIH-exam-dumps-review.html

Related Links: myportal.utt.edu.tt myportal.utt.edu.tt myportal.utt.edu.tt telegra.ph myportal.utt.edu.tt myportal.utt.edu.tt

Related Posts

Leave a Reply

Your email address will not be published. Required fields are marked *

Enter the text from the image below