Question

Difficulty: EasyThreat Actors, Attributes, and Attack Vectors

Match each threat actor type on the left with its defining capability, access level, or primary motivation on the right.

  • Nation-state actorExtensive financial backing, state sponsorship, and advanced persistent threat (APT) capabilities
  • Insider threatExisting legitimate administrative or operational privileges within the organizational boundary
  • HacktivistIdeological, political, or social causes driving public disruption and propaganda
  • Script kiddieLow technical sophistication relying primarily on pre-existing automated exploitation scripts

Answer

Nation-state actors correspond to state sponsorship and advanced persistent threat capabilities. Insider threats correspond to existing legitimate privileges. Hacktivists correspond to ideological or political motivations. Script kiddies correspond to low technical sophistication using pre-existing scripts.
Nation-state actors possess high sophistication and state funding. Insider threats leverage authorized internal access. Hacktivists operate based on social/political motives. Script kiddies rely on pre-written tools due to limited skill.

Step-by-Step Solution

1
Analyze each threat actor category based on standard cybersecurity taxonomy.
Identified key threat actors: Nation-state, Insider threat, Hacktivist, and Script kiddie.
Threat actors are categorized by sophistication, motivation, resources, and access levels.
2
Evaluate the distinguishing attributes listed on the right.
Mapped each threat actor to its primary attribute.
Correct alignment demonstrates fundamental knowledge of threat actor profiles and operational risk vectors.

Key Concept

Threat Actor Attributes and Classifications
Rate this question