GCIH › Detecting Evasive and Post-Exploitation Techniques
This GCIH domain covers how attackers evade detection and operate after initial compromise on Windows and Linux hosts. Questions present exhibits, logs, or process trees and ask you to identify the technique, explain why a control failed, or choose a detection strategy that catches the activity without flooding analysts with benign administrative noise.
GCIH Detecting Evasive and Post-Exploitation Techniques — All 29 Questions
Every question in this domain with answers and detailed explanations.
Securing Credentials and Data in Cloud
Endpoint Attack and Pivoting
SMB Security
Malware and AI-Assisted Investigations
Understanding Passwords
Detecting Exploitation and Covert Communication Tools
Integrating LLMs with Offensive Operations
Network and Log Investigations
Exploiting Insecure Web App References
Web App API Attacks
Web App Injection Attacks
Incident Response and Cyber Investigation
Attacking Passwords
Scanning and Mapping