Match each threat actor profile to the primary attribute combination and attack strategy that most accurately characterizes their operations.
- Nation-state adversaryExtensive funding and high sophistication, motivated by geopolitical intelligence gathering via stealthy supply chain compromises and advanced persistent threats.
- Hacktivist collectiveModerate sophistication and low funding, motivated by social or political causes via high-visibility web defacements and distributed denial-of-service (DDoS) attacks.
- Disgruntled insiderVarying sophistication with direct legitimate credentials, motivated by personal grievances or financial gain via unauthorized internal data exfiltration.
- Organized crime syndicateSubstantial financial backing and high technical capability, motivated primarily by profit through widespread double-extortion ransomware campaigns.
Answer
Nation-state adversaries correspond to extensive funding, high sophistication, and geopolitical espionage goals. Hacktivist collectives match ideological motivation with public-facing attacks like DDoS and defacement. Disgruntled insiders possess internal credentials and act out of grievance or financial incentive. Organized crime syndicates deploy profit-driven ransomware operations with high capabilities.
Each threat actor type possesses distinct attributes: nation-states focus on strategic state-sponsored espionage with custom vectors; hacktivists aim for public awareness using disruption tactics; insiders utilize legitimate credentials for malicious exfiltration; and organized crime syndicates operate as sophisticated financial enterprises.
Step-by-Step Solution
Key Concept
Threat Actor Profiling and Attributes