GIAC GPEN Exam Syllabus Topics:
| Topic | Details |
|---|---|
| Password Attacks | - The candidate will understand types of password attacks, formats, defenses, and the circumstances under which to use each password attack variation. The candidate will be able to conduct password guessing attacks. |
| Password Formats and Hashes | - The candidate will demonstrate an understanding of common password hashes and formats for storing password data. |
| Penetration Test Planning | - The candidate will be able to demonstrate the fundamental concepts associated with pen-testing, and utilize a process-oriented approach to penetration testing and reporting. |
| Exploitation Fundamentals | - The candidate will be able to demonstrate the fundamental concepts associated with the exploitation phase of a pentest. |
| Advanced Password Attacks | - The candidate will be able to use additional methods to attack password hashes and authenticate. |
| Kerberos Attacks | - The candidate will demonstrate an understanding of attacks against Active Directory including Kerberos attacks. |
| Web Application Reconnaisance | - The candidate will demonstrate an understanding of the use of tools and proxies to discover web application vulnerabilities. |
| Attacking Password Hashes | - The candidate will be able to obtain and attack password hashes and other password representations. |
| Penetration Testing with PowerShell and the Windows Command Line | - The candidate will demonstrate an understanding of the use of advanced Windows command line skills during a penetration test, and demonstrate an understanding of the use of advanced Windows Power Shell skills during a penetration test. |
| Web Application Injection Attacks | - The candidate will demonstrate an understanding of how injection attacks work against web applications and how to conduct them. |
| Escalation and Exploitation | - The candidate will be able to demonstrate the fundamental concepts of exploitation, data exfiltration from compromised hosts and pivoting to exploit other hosts within a target network. |
| Moving Files with Exploits | - The candidate will be able to use exploits to move files between remote systems. |
| Vulnerability Scanning | - The candidate will be able to conduct vulnerability scans and analyze the results. |
| Metasploit | - The candidate will be able to use and configure the Metasploit Framework at an intermediate level. |
| Scanning and Host Discovery | - The candidate will be able to use the appropriate technique to scan a network for potential targets, and to conduct port, operating system and service version scans and analyze the results. |
| Domain Escalation and Persistence Attacks | - The candidate will demonstrate an understanding of common Windows privilege escalation attacks and Kerberos attack techniques that are used to consolidate and persist administrative access to Active Directory. |
| Reconnaissance | - The candidate will understand the fundamental concepts of reconnaissance and will understand how to obtain basic, high level information about the target organization and network, often considered information leakage, including but not limited to technical and non technical public contacts, IP address ranges, document formats, and supported systems. |
Reference: http://www.giac.org/certification/penetration-tester-gpen
Simulation for the APP version
It is well acknowledged that people who have a chance to participate in the simulation for GIAC GPEN real test, they must have a fantastic advantage over other people to get good grade in the exam. Now, it is so lucky for you to meet this opportunity once in a blue. We offer you the simulation test with APP version of GPEN study guide in order to let you be familiar with the environment of test as soon as possible. Under the help of the APP test engine of GPEN study guide, you can have a good command of key points which are more likely to be tested in the real test. Therefore that adds more confidence for you to make a full preparation of the upcoming exam. In addition, since you can experience the process of the GPEN origination questions, you will feel less pressure about the approaching GIAC GPEN exam. It sounds wonderful, right? Of course, it is. So why not have a try? We promise you will enjoy this study.
Scopes Tested in GPEN Evaluation
You can be successful in the GIAC GPEN certification exam from the first attempt if you carefully check its blueprint and manage to develop the following skills:
- Using different methods that will help you authenticate and attack any password hashes;
- Managing host discovery and scanning concepts together with learning how to develop vulnerability scanning.
- Discerning the reconnaissance fundamental concepts;
- Becoming able to prevent and mitigate the attacks that target the Active Directory such as the Kerberos attacks;
- Understanding how to manage and prevent password attacks;
- Developing the ability to work with the fundamental concepts that enable you to work with pen-testing;
- Obtaining and attacking password hashes together with gaining the skills to solve additional password representation situations;
- Demonstrating in-depth knowledge of using advanced skills related to Windows command line;
- Demonstrating a solid knowledge of working with pentest exploitation phases and the additional concepts associated with it;
- Configuring and developing the ability to use the Metasploit Framework at an intermediate level;
- Understanding the basics of exploitation concepts together with knowing how to work with data exfiltration topics;
- Developing the ability to use exploits that will help you move different sets of files between remote systems;
- Gaining a clear overview of Azure architecture together with solving common Windows escalation attacks and understanding how to use preventive techniques to mitigate Kerberos attacks;
- Understanding how to manage Azure applications and prevent any attacks that might appear on the road;
The candidates who want to validate their skills in conducting a penetration test and get the GIAC Penetration Tester certification will need to pass the GIAC GPEN exam first.
Convenient for reading and taking notes with the PDF version
If you use our study materials, you will find GPEN exam braindumps enjoy great praise from people at home and abroad. For one thing, it is convenient and easy for you to read exam questions and answers of our GPEN origination questions. And at the same time, you can take notes on the paper. For another thing, the GPEN study guide materials are available for you at any time no matter where you are. So don't miss the good opportunity, just buy it.
After purchase, Instant Download: Upon successful payment, Our systems will automatically send the product you have purchased to your mailbox by email. (If not received within 12 hours, please contact us. Note: don't forget to check your spam.)
As we all know, we have undergone all kinds of exams from the childhood to adulthood. It is a fact that a person gaining high score is always favored by families, teachers, and employers. So the key is how to pass GIAC GPEN exam test with high score. If you have some worries about the exam, don't have a good choice about the appropriate GPEN exam braindumps. You might as well choose the exam materials offered by our company. I believe you must have a satisfying experience of study and benefit from the GPEN origination questions a lot because of the following merits owned by our products.
Free renewal for one year
We always put the demand of customers as the first place. In order to provide the high-quality service to our customers, our company offer free renewal of GPEN study guide for one year to those people who make a purchase of our practice test questions. In doing do, people who are making a preparation for GIAC GPEN the exam can learn better. Just imagine how easier for them it is to catch and receive the latest information and sources about the exam if people can get our GPEN exam braindumps which are updated by our authoritative experts in the critical period. You will never be surprised at seeing any weird questions because all these questions are tested or seen by you before you take part in this exam. Besides free renewal for our GPEN origination questions shapes the unique thinking ways for people. The GPEN study guide questions covers many novel questions and methods of dealing with these questions. So with the help of the renewal of the GPEN exam braindumps, it is a piece of cake for you to succeed in passing this exam.




