Section 3.18 Threat Actor Flashcards

Objectives 1.2 Summarise fundamental security concepts Objectives 2.1 Compare and contrast threat actors and motivations Objectives 2.2 Explain common threat vectors and attack surfaces

1
Q

Threat Actor

Section 3

A

An individual or entity responsible for causing harm, loss or damage to an organisation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Threat Actor Intent

A

Specific objective or goal that a threat actor wants to achieve throught their attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Threat Actor Motivation

A

Underlying reason or driving forces that pushes a threat actor to carry out the attack

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

10 motives

Threat Actor Motivations

A
  1. Data Exfiltration: unauthorised transfer of data from a computer
  2. Financial Gain: Ranswomware attacks or trying to gain access to bank accounts
  3. Blackmail: Attacker obtains sensitive information and threatens to release this information unless certain demands are met.
  4. Service Disruption: Conducting DDoS attack to flood networks which leaves people unable to access information.
  5. Philosophical or Political Beliefs: Hacktivism - use hacking to promote political agenda
  6. Ethical Reasons: Motivated to enhance security (PEN Tester) by exploiting organisations weaknesses subsequently enhancing them.
  7. Revenge: Powerful motivation - can be disgruntled employees or threat actors who feel they have been wronged
  8. Disruption or Chaos: Unauthorised hackers who just want to watch the world burn
  9. Espionage: Spying on individuals, organisations or nations to gather sensitive infotmation
  10. War: Cyber warfare can be used to disrupt a country’s infrastructure, compromise its national security, and to cause economic damage
How well did you know this?
1
Not at all
2
3
4
5
Perfectly