A municipal public transit organization discovers that its public announcement website was defaced with political slogans during an election cycle. Incident responders determine that the attacker utilized pre-built exploit scripts downloaded from an open forum, without customizing code or attempting to establish long-term persistence. Which of the following threat actor types is most likely responsible for this incident?
- A hacktivist motivated by ideological goals using readily available, low-sophistication toolsAnswer
- BA nation-state threat actor seeking covert long-term intelligence gathering
- CAn insider threat leveraging legitimate credentials for unauthorized data exfiltration
- DAn organized crime syndicate delivering customized Trojan malware for financial extortion
Answer
A hacktivist motivated by ideological goals using readily available, low-sophistication tools
The correct answer describes a hacktivist. Hacktivists operate based on political, social, or ideological motivations. They commonly target high-visibility public assets like websites to broadcast messages, often using open-source scanning and exploitation scripts due to limited custom development capabilities.
Step-by-Step Solution
Key Concept
Threat Actor Types, Motivations, and Sophistication Levels
Estimated Time:45s