Soru

Zorluk: OrtaThreat Actors, Attributes, and Attack Vectors

A cybersecurity analyst is conducting a threat model assessment for a renewable energy infrastructure firm. The analyst needs to accurately map different threat actor categories to their characteristic attributes, motivations, and attack vectors. Which of the following statements correctly align a threat actor category with its defining attributes and attack vectors? (Select TWO).

  1. Hacktivist groups are driven by political or ideological motivations and typically employ attack vectors such as web defacement and distributed denial-of-service (DDoS) attacks to gain publicity.Cevap
  2. B
    Script kiddies possess high technical sophistication and primarily develop custom zero-day exploits to execute supply chain attacks against defense contractors.
  3. Insider threats possess legitimate organizational credentials or physical access, allowing them to bypass traditional perimeter security controls without launching external penetration vectors.Cevap
  4. D
    Shadow IT actors are state-sponsored operatives who utilize covert persistence techniques to exfiltrate intellectual property for geopolitical advantage.

Cevap

Hacktivist groups are driven by political or ideological motivations and typically employ attack vectors such as web defacement and distributed denial-of-service (DDoS) attacks to gain publicity. Insider threats possess legitimate organizational credentials or physical access, allowing them to bypass traditional perimeter security controls without launching external penetration vectors.
The correct choices accurately describe hacktivists (driven by ideology and public disruption tactics like DDoS) and insider threats (leveraging existing legitimate access to bypass perimeter defenses).

Adım Adım Çözüm

1
Analyze the hacktivist threat profile.
Hacktivists are characterized by political or social motivations, leveraging high-visibility attack vectors like DDoS and defacement.
Aligning intent and vector confirms that this statement correctly describes hacktivist threat attributes.
2
Evaluate the script kiddie threat profile.
The statement incorrectly attributes nation-state level sophistication (zero-day supply chain development) to script kiddies.
Script kiddies lack advanced technical skills and rely on automated scripts.
3
Analyze the insider threat profile.
The statement accurately identifies that existing internal access allows insider threats to circumvent perimeter defenses.
Insider threats exploit pre-existing permissions rather than external intrusion vectors.
4
Evaluate the Shadow IT threat profile.
The statement misclassifies Shadow IT as state-sponsored APT activity rather than employee policy non-compliance.
Shadow IT originates from benign or convenience-driven internal adoption of unauthorized technology.

Anahtar Kavram

Threat Actor Attributes, Motivations, and Attack Vectors
Bu soruyu puanla