GCIH › Scanning and Mapping
This domain covers reconnaissance and network discovery using Nmap and related tooling: host discovery, port scanning techniques, timing templates, and firewall/IDS evasion. GCIH questions present incident-handler scenarios where you must choose the correct scan type, source port, or timing template for a target environment, balancing thoroughness against stealth, accuracy, and the risk of disrupting fragile or sensitive systems.
GCIH Scanning and Mapping — All 31 Questions
Every question in this domain with answers and detailed explanations.
Securing Credentials and Data in Cloud
Endpoint Attack and Pivoting
SMB Security
Malware and AI-Assisted Investigations
Understanding Passwords
Detecting Exploitation and Covert Communication Tools
Detecting Evasive and Post-Exploitation Techniques
Integrating LLMs with Offensive Operations
Network and Log Investigations
Exploiting Insecure Web App References
Web App API Attacks
Web App Injection Attacks
Incident Response and Cyber Investigation
Attacking Passwords