Match the Cyber Security Threat Vectors in List-I with their corresponding Operational Descriptions in List-II:
- Spear PhishingTargeted fraudulent communication tailored with personalized information to deceive a specific organization or high-profile individual
- Man-in-the-Middle (MitM) AttackAttacker secretly eavesdrops or alters communication between two legitimate systems that believe they are directly connected
- Drive-by DownloadUnintentional installation of malicious code triggered merely by visiting a compromised web page without user interaction
- Zero-Day ExploitCyber attack exploiting a software vulnerability that is undisclosed to the software developer and has no available security patch
Answer
Spear Phishing corresponds to targeted fraudulent communication using personalized details. Man-in-the-Middle attack corresponds to secretly intercepting communications between two connected systems. Drive-by Download corresponds to unintentional malware installation when accessing a compromised web page. Zero-Day Exploit corresponds to attacking software vulnerabilities that lack an available vendor patch.
Each cyber security threat vector is accurately paired with its operational definition: Spear Phishing uses tailored social engineering for specific targets; Man-in-the-Middle attacks intercept active channel communications; Drive-by Downloads install payload scripts automatically upon page load; and Zero-Day Exploits target undisclosed software flaws lacking patches.
Step-by-Step Solution
Key Concept
Classification and Mechanics of Cyber Threats
Estimated Time:1m 30s