nerdexam
EC-Council

212-82 · Question #39

You are a penetration tester working to test the user awareness of the employees of the client xyz. You harvested two employees' emails from some public sources and are creating a client- side backdoo

The correct answer is C. Weaponization. Cyber Kill Chain Stage Explanation Weaponization (C) is correct because this stage involves taking the harvested information and crafting a malicious payload - in this case, building a client-side backdoor to be delivered via email. Weaponization is specifically defined as pairin

Submitted by ravi_2018· Mar 6, 2026Cloud Security Risks & Threat Mitigation

Question

You are a penetration tester working to test the user awareness of the employees of the client xyz. You harvested two employees' emails from some public sources and are creating a client- side backdoor to send it to the employees via email. Which stage of the cyber kill chain are you at?

Options

  • AReconnaissance
  • BCommand and control
  • CWeaponization
  • DExploitation

How the community answered

(38 responses)
  • A
    3% (1)
  • B
    8% (3)
  • C
    84% (32)
  • D
    5% (2)

Explanation

Cyber Kill Chain Stage Explanation

Weaponization (C) is correct because this stage involves taking the harvested information and crafting a malicious payload - in this case, building a client-side backdoor to be delivered via email. Weaponization is specifically defined as pairing an exploit with a deliverable weapon (like a malicious document or executable) before it reaches the target.

Why the distractors are wrong:

  • Reconnaissance (A) already occurred - that's when the emails were harvested from public sources; the attacker has moved past that stage
  • Command and Control (B) comes much later in the kill chain, after the payload has been delivered, executed, and a communication channel established back to the attacker
  • Exploitation (D) occurs when the weapon is triggered on the victim's system, not during its creation

Memory Tip: Think of Weaponization like a bomb-maker in a workshop - Reconnaissance found the target, but Weaponization is when you're actually building the weapon. The sequence is: Recon → Weaponize → Deliver → Exploit. If you're still in your "workshop" crafting the attack tool, you're in Weaponization.

Topics

#Cyber Kill Chain#Weaponization#Penetration Testing#Threat Mitigation

Community Discussion

No community discussion yet for this question.

Full 212-82 Practice