Threat Actors 2.1 Flashcards

1
Q

A […] is the entity responsible for an event that has an impact on the safety of another entity

A

Threat Actor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

An […] threat actor comes from inside the organization

A

Internal

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

An […] threat actor comes from outside your organization

A

External

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Attributes of a threat actor include

A
  • Resources / Funding
  • Whether they are Internal / External
  • Are they Sophisticated / Unsophisticated?
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Motivations of a threat actor:

A
  • Data exfiltration
  • Espionage
  • Service Disruption
  • Blackmail
  • Financial Gain
  • Philosophical Beliefs
  • Revenge
  • Disruption/Chaos
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A […] threat actor is outside of your organization and belongs to a government or branch of said government.

Motivations might include data exfil, revenge, disruption, or war.

Usually the highest sophistication

A

Nation State

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

An […] is not knowledgeable, and anyone can do it. Usually run pre-made scripts without knowing what they’re actually doing.

Can be internal or external

Limited resources

A

Unskilled Attacker

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

A […] is a skilled attacker, usually motivated by philosophy, revenge, or disruption.

Often an external entity, but can infiltrate and become an insider threat

Funding usually limited

A

Hacktivist

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

A […] is usually motivated by revenge or financial gain, and comes from inside your organization.

Extensive resources (using the organizations resources against themselves)

Medium level of sophistication (Institutional knowledge)

A

Insider Threat

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

[…] refers to professional criminals, usually motivated by money

Almost always an external entity

Very sophisticated

A

Organized Crime

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

[…] refers to a rogue worker who circumvents the existing infrastructure and creates their own

Limited resources (Company Budget)

Medium Sophistication

May not have IT training and knowledge

A

Shadow IT

How well did you know this?
1
Not at all
2
3
4
5
Perfectly