What is the 'Cyber Kill Chain' framework used for?
- A.Measuring network performance; a command and control channel always runs over an unencrypted protocol
- B.Describing the stages of a cyberattack from reconnaissance to action on objectives
- C.Rating the severity of vulnerabilities, and a supply chain attack needs physical access to the vendor premises
- D.Classifying types of malware
Why B is correct
The Cyber Kill Chain, developed by Lockheed Martin, describes the seven stages of a cyberattack: Reconnaissance, Weaponization, Delivery, Exploitation, Installation, Command & Control, and Actions on Objectives. It helps defenders understand where an attack is in its lifecycle and where to break the chain.
Know someone studying for Security Fundamentals? Send them this one.