A cybersecurity team at an automated pharmaceutical manufacturing plant is investigating a covert intrusion into their industrial control systems. The adversary maintained persistent access for eight months without detection, utilized proprietary zero-day exploits against specialized programmable logic controller (PLC) firmware, and subtly modified drug formulation parameters rather than attempting extortion or causing immediate system outages. Which TWO of the following threat actor attributes and attack vector characteristics are demonstrated in this scenario?
- The adversary demonstrates high technical sophistication and funding levels characteristic of a nation-state threat actor.Cevap
- The attack path involved targeted zero-day vulnerability exploitation across specialized operational technology vectors.Cevap
- CThe campaign primary motivation aligns with organized crime syndicates conducting opportunistically targeted ransomware attacks.
- DThe threat vector relied on automated, self-propagating worm payloads designed for widespread network saturation.
Cevap
The threat actor demonstrates high technical sophistication and financial backing typical of a nation-state actor, and the attack path leveraged zero-day vulnerabilities in specialized operational technology.
The scenario highlights an adversary with significant resourcing, technical capability, and patient strategic goals—key markers of nation-state actors. Furthermore, leveraging zero-day vulnerabilities against specialized industrial machinery represents a dedicated operational technology vector designed for targeted impact.
Adım Adım Çözüm
Anahtar Kavram
Threat Actor Attributes and Attack Vectors
Tahmini Süre:2m 0s