Threat Actors 2.1 Flashcards
A […] is the entity responsible for an event that has an impact on the safety of another entity
Threat Actor
An […] threat actor comes from inside the organization
Internal
An […] threat actor comes from outside your organization
External
Attributes of a threat actor include
- Resources / Funding
- Whether they are Internal / External
- Are they Sophisticated / Unsophisticated?
Motivations of a threat actor:
- Data exfiltration
- Espionage
- Service Disruption
- Blackmail
- Financial Gain
- Philosophical Beliefs
- Revenge
- Disruption/Chaos
A […] threat actor is outside of your organization and belongs to a government or branch of said government.
Motivations might include data exfil, revenge, disruption, or war.
Usually the highest sophistication
Nation State
An […] is not knowledgeable, and anyone can do it. Usually run pre-made scripts without knowing what they’re actually doing.
Can be internal or external
Limited resources
Unskilled Attacker
A […] is a skilled attacker, usually motivated by philosophy, revenge, or disruption.
Often an external entity, but can infiltrate and become an insider threat
Funding usually limited
Hacktivist
A […] is usually motivated by revenge or financial gain, and comes from inside your organization.
Extensive resources (using the organizations resources against themselves)
Medium level of sophistication (Institutional knowledge)
Insider Threat
[…] refers to professional criminals, usually motivated by money
Almost always an external entity
Very sophisticated
Organized Crime
[…] refers to a rogue worker who circumvents the existing infrastructure and creates their own
Limited resources (Company Budget)
Medium Sophistication
May not have IT training and knowledge
Shadow IT