A defender is mapping techniques named Brute Force I/O, Modify Parameter and Unauthorized Command Message. Which ATT&CK for ICS tactic groups them?
- A.Impair Process Control
- B.Inhibit Response Function
- C.Privilege Escalation
- D.Lateral Movement
Why A is correct
Those techniques change how the physical process behaves, which is the goal of Impair Process Control. Inhibit Response Function targets safety and alarm mechanisms, while the other two tactics concern gaining rights and moving between hosts.
Know someone studying for OT Security Fundamentals? Send them this one.