nerdexam
Cisco

200-201 · Question #541

Drag and Drop Question Drag and drop the definitions from the left onto the phases on the right to classify intrusion events according to the Cyber Kill Chain model. Answer:

The correct answer is The threat actor engages in identification and selection of targets.; An exploit is coupled with a remote access trojan.; The weapon is transferred to the target environment. The Cyber Kill Chain model defines sequential phases of a cyberattack. 'Identification and selection of targets' maps to the Reconnaissance phase, where threat actors gather information about potential victims. 'An exploit coupled with a remote access trojan' describes the…

Submitted by renata2k· Mar 6, 2026Threat Intelligence and Incident Response - Understanding attack frameworks and models such as the Lockheed Martin Cyber Kill Chain to classify and analyze adversary behavior (relevant to CySA+, Security+, and CEH certification domains)

Question

Drag and Drop Question Drag and drop the definitions from the left onto the phases on the right to classify intrusion events according to the Cyber Kill Chain model. Answer:

Exhibit

200-201 question #541 exhibit

Answer Area

Drag items

The threat actor engages in identification and selection of targets.An exploit is coupled with a remote access trojan.The weapon is transferred to the target environment.

Correct arrangement

  • The threat actor engages in identification and selection of targets.
  • An exploit is coupled with a remote access trojan.
  • The weapon is transferred to the target environment.

Explanation

The Cyber Kill Chain model defines sequential phases of a cyberattack. 'Identification and selection of targets' maps to the Reconnaissance phase, where threat actors gather information about potential victims. 'An exploit coupled with a remote access trojan' describes the Weaponization phase, where attackers package malicious payloads, and 'the weapon is transferred to the target environment' represents the Delivery phase, where the weaponized payload is transmitted via email, web, USB, or other vectors.

Topics

#Cyber Kill Chain#Intrusion Detection#Threat Intelligence#Attack Lifecycle

Community Discussion

No community discussion yet for this question.

Full 200-201 Practice