Frameworks Flashcards

1
Q

Cybersecurity Framework

A

Framework core: 5 functions, 22 categories, 98 subcategories

Implementation tier:
Partial, Risk informed, repeatable, adaptive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

MITRE ATT&CK (Adversarial Tactics, Techniques, & Common Knowledge)

A
  1. Initial access
  2. Execution
  3. Persistence
  4. Privilege escalation
  5. Defense evasion
  6. Credential access
  7. Discovery
  8. Lateral movement
  9. Collection and exfiltration
  10. Command and control
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Cyber Kill Chain

A
  1. Reconnaissance
  2. Weaponization
  3. Delivery
  4. Exploitation
  5. Installation
  6. Command and control
  7. Actions on objectives
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What are ATT&CK tactics?

A

An ATT&CK tactic is the highest level objective of an attacker. Tactics give the analyst information on the potential intent of the activity – or answering why an adversary is performing their actions. Tactics represent high-level contextual categories for individual techniques – for example, initial access, execution, persistence.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What are ATT&CK techniques?

A

An ATT&CK technique is how the attacker meets their objectives and also represents what an adversary seeks to gain with their actions. For example an adversary may seek to encrypt or compress data techniques while attempting to perform the Exfiltration tactic

How well did you know this?
1
Not at all
2
3
4
5
Perfectly