200-201 · Question #375
Which action matches the weaponization step of the Cyber Kill Chain Model?
The correct answer is A. Develop a specific malware to exploit a vulnerable server. The weaponization step of the Cyber Kill Chain involves combining an exploit with a backdoor or payload into a deliverable package, such as developing specific malware for an attack.
Question
Which action matches the weaponization step of the Cyber Kill Chain Model?
Options
- ADevelop a specific malware to exploit a vulnerable server.
- BConstruct a trojan and deliver it to the victim.
- CMatch a known script to a vulnerability.
- DScan open services and ports on a server.
How the community answered
(17 responses)- A88% (15)
- C6% (1)
- D6% (1)
Why each option
The weaponization step of the Cyber Kill Chain involves combining an exploit with a backdoor or payload into a deliverable package, such as developing specific malware for an attack.
Weaponization is the stage where the attacker combines the exploit (method to take advantage of a vulnerability) with a backdoor or payload (malicious code that achieves the attacker's objective) into a deliverable package. Developing a specific malware designed to exploit a vulnerable server directly aligns with this step, as it creates the 'weapon' for the attack.
Constructing a trojan and delivering it to the victim combines weaponization and delivery, which are distinct steps in the Cyber Kill Chain.
Matching a known script to a vulnerability describes the 'exploitation' phase or earlier reconnaissance/vulnerability analysis, not the creation of the weapon itself.
Scanning open services and ports on a server is part of the 'reconnaissance' phase, where the attacker gathers information about the target.
Concept tested: Cyber Kill Chain - Weaponization
Source: https://learn.microsoft.com/en-us/microsoft-365/security/defender-endpoint/threat-lifecycle?view=o365-worldwide
Topics
Community Discussion
No community discussion yet for this question.