Threats Flashcards

1
Q

What is a threat actor?

A

The act responsible for an event that has an impact on the safety of another entity.

Also called a malicious actor.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are threat actor attributes?

A

Characteristics of the attacker that help categorize their motivation.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What are the two categories of threat actor attributes?

A

Internal/external and resources/funding.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What does ‘internal’ mean in the context of threat actors?

A

The attacker is inside the organization.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What does ‘external’ mean in the context of threat actors?

A

The attacker is outside and trying to get in.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What are the two extremes of resources/funding for threat actors?

A

No money and extensive funding.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What are the levels of sophistication/capability for threat actors?

A

Blindly runs scripts or automated vulnerability scans, or can write their own attack malware and scripts.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What motivates threat actors?

A

There is a purpose to the attack.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What are some common motivations of threat actors?

A

Data exfiltration, espionage, service disruption, blackmail, financial gain, philosophical/political beliefs, ethical reasons, revenge, disruption/chaos, and war.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What defines nation state threat actors?

A

External entities such as government and national security with many possible motivations.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What is an Advanced Persistent Threat (APT)?

A

Constant attacks with the highest sophistication, often involving military control, utilities, and financial control.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is an example of a sophisticated attack by a nation state?

A

The United States and Israel destroyed 1,000 nuclear centrifuges with the Stuxnet worm.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

What characterizes unskilled attackers?

A

They run pre-made scripts without any knowledge of what’s really happening.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What motivates unskilled attackers?

A

The hunt, which may include disruption, data exfiltration, or sometimes philosophical reasons.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What defines a hacktivist?

A

Motivated by philosophy, revenge, disruption, etc., often an external entity but can infiltrate as an insider threat.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is the sophistication level of hacktivists?

A

They can be remarkably sophisticated with very specific hacks.

17
Q

What defines insider threats?

A

Internal entities using the organization’s resources against themselves.

18
Q

What is the sophistication level of insider threats?

A

Medium level, as insiders have institutional knowledge and know what systems to target.

19
Q

What characterizes organized crime in the context of threat actors?

A

Professional criminals motivated by money, almost always external entities with high sophistication.

20
Q

What is shadow IT?

A

Going rogue by working around the internal IT organization and building their own infrastructure.

21
Q

What is the sophistication level of shadow IT?

A

Medium sophistication, as they may not have IT training or knowledge.