PCCET · Question #162
Which option is a sequence of events that an attacker would perform to infiltrate a network and steal data?
The correct answer is B. Cyber-attack lifecycle. The cyber-attack lifecycle describes the sequential stages an attacker typically follows to infiltrate a network and achieve their objectives, such as stealing data.
Question
Which option is a sequence of events that an attacker would perform to infiltrate a network and steal data?
Options
- AAdvanced persistent threats
- BCyber-attack lifecycle
- CEvil twin
- DSpamming botnets
How the community answered
(30 responses)- A7% (2)
- B87% (26)
- C3% (1)
- D3% (1)
Why each option
The cyber-attack lifecycle describes the sequential stages an attacker typically follows to infiltrate a network and achieve their objectives, such as stealing data.
Advanced persistent threats (APTs) are a type of sophisticated, sustained cyber attack, but the term refers to the threat actor and their sustained campaign, not a specific sequence of events itself.
The cyber-attack lifecycle, often referred to as the Cyber Kill Chain, outlines the structured phases an adversary undertakes, including reconnaissance, weaponization, delivery, exploitation, installation, command-and-control, and actions on objectives like data exfiltration. This framework provides a comprehensive view of an attack's progression.
An evil twin is a fraudulent Wi-Fi access point designed to trick users into connecting and revealing sensitive information, which is a specific attack vector, not a general sequence of infiltration events.
Spamming botnets are networks of compromised computers used to distribute spam or launch other attacks, representing an infrastructure used by attackers, not a sequence of events for infiltration.
Concept tested: Cyber-attack lifecycle phases
Source: https://www.paloaltonetworks.com/cyber-security-attack-lifecycle
Topics
Community Discussion
No community discussion yet for this question.