nerdexam
EC-Council

112-52 · Question #113

Which stage of the Cyber Kill Chain involves delivering the weaponized payload to the target?

The correct answer is D. Delivery. Delivery is the stage where the attacker transmits the weaponized payload to the victim - for example, via a phishing email with a malicious attachment, a drive-by download, or a USB drop. It's the moment the attacker loses direct control and the weapon is "in the air" heading…

Attacks and Countermeasures

Question

Which stage of the Cyber Kill Chain involves delivering the weaponized payload to the target?

Options

  • AReconnaissance
  • BWeaponization
  • CInstallation
  • DDelivery

How the community answered

(26 responses)
  • A
    4% (1)
  • B
    4% (1)
  • D
    92% (24)

Explanation

Delivery is the stage where the attacker transmits the weaponized payload to the victim - for example, via a phishing email with a malicious attachment, a drive-by download, or a USB drop. It's the moment the attacker loses direct control and the weapon is "in the air" heading toward the target.

  • A (Reconnaissance) is wrong because that stage is about gathering information on the target (scanning, OSINT) - no payload exists yet.
  • B (Weaponization) is wrong because that's where the attacker creates the payload (e.g., coupling an exploit with a trojan) - it hasn't left the attacker's hands yet.
  • C (Installation) is wrong because that stage occurs after delivery succeeds - it's when the malware establishes a foothold on the compromised system.

Memory tip: Think of the Kill Chain as an order of operations - Recon → Weaponize → Deliver → Exploit → Install. Delivery is the "launch" phase: the weapon is built and now it's being sent. If you remember that Weaponization = build and Installation = land, Delivery = the flight in between is easy to place.

Topics

#Cyber Kill Chain#Delivery Stage#Attack Phases#Payload Transmission

Community Discussion

No community discussion yet for this question.

Full 112-52 Practice