nerdexam
GIAC

GREM · Question #23

What is the typical behavior of a malicious RTF file when opened in a vulnerable application?

The correct answer is B. It executes embedded shellcode without any noticeable changes to the document. See the full explanation below for the reasoning.

Question

What is the typical behavior of a malicious RTF file when opened in a vulnerable application?

Options

  • AIt crashes the application to signal a successful exploit.
  • BIt executes embedded shellcode without any noticeable changes to the document.
  • CIt prompts the user to enable editing or content.
  • DIt displays garbled or nonsensical text to distract the user.

How the community answered

(28 responses)
  • A
    11% (3)
  • B
    82% (23)
  • C
    7% (2)

Community Discussion

No community discussion yet for this question.

Full GREM Practice