nerdexam
Exams312-50V10Questions#862
EC-Council

312-50V10 · Question #862

312-50V10 Question #862: Real Exam Question with Answer & Explanation

The correct answer is D. initial intrusion. The APT lifecycle phase where an attacker first gains a foothold through phishing or exploitation and deploys malware is called Initial Intrusion.

System Hacking

Question

Harry. a professional hacker, targets the IT infrastructure of an organization. After preparing for the attack, he attempts to enter the target network using techniques such as sending spear- phishing emails and exploiting vulnerabilities on publicly available servers. Using these techniques, he successfully deployed malware on the target system to establish an outbound connection. What is the APT lifecycle phase that Harry is currently executing?

Options

  • APreparation
  • BCleanup
  • CPersistence
  • Dinitial intrusion

Explanation

The APT lifecycle phase where an attacker first gains a foothold through phishing or exploitation and deploys malware is called Initial Intrusion.

Common mistakes.

  • A. Preparation is the phase that precedes the attack and involves reconnaissance, target research, and tool staging - activities that occur before any intrusion attempt is made.
  • B. Cleanup is the final APT phase in which the attacker removes artifacts, logs, and backdoors to conceal their presence after objectives have been achieved.
  • C. Persistence is the phase that follows initial intrusion, during which the attacker establishes mechanisms to maintain long-term access - it assumes an existing foothold has already been created.

Concept tested. APT lifecycle initial intrusion phase identification

Reference. https://www.eccouncil.org/cybersecurity-exchange/ethical-hacking/apt-lifecycle/

Topics

#APT lifecycle#initial intrusion#spear-phishing#malware deployment

Community Discussion

No community discussion yet for this question.

Full 312-50V10 Practice